AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-46938

HIGH · CVSS 7.5 EPSS 46.06%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-09-15 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. Its EPSS score suggests a 46.1% probability of exploitation in the next 30 days. Exploitation may require the attacker to be authenticated.

CVE
CVE-2024-46938
Severity
HIGH
CVSS
7.5
EPSS
46.06%

Original NVD Description

An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0 Initial Release through 10.4 Initial Release. An unauthenticated attacker can read arbitrary files.

Related CVEs

Other vulnerabilities affecting the same vendor(s)