Vulnerability Details CVE-2024-24554
Bludit uses predictable methods in combination with the MD5 hashing algorithm to generate sensitive tokens such as the API token and the user token. This allows attackers to authenticate against the Bludit API.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.3%
CVSS Severity
CVSS v3 Score 8.2
Products affected by CVE-2024-24554
-
cpe:2.3:a:bludit:bludit:3.14.0
-
cpe:2.3:a:bludit:bludit:3.14.1
-
cpe:2.3:a:bludit:bludit:3.15.0