AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-45843

LOW · CVSS 3.1 EPSS 0.21%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-09-26 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 3.1. It affects Oracle.

CVE
CVE-2024-45843
Severity
LOW
CVSS
3.1
EPSS
0.21%
Oracle

Original NVD Description

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

Related CVEs

Other vulnerabilities affecting the same vendor(s)