Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-7476

A broken access control vulnerability exists in lunary-ai/lunary versions 1.2.7 through 1.4.2. The vulnerability allows an authenticated attacker to modify any user's templates by sending a crafted HTTP POST request to the /v1/templates/{id}/versions endpoint. This issue is resolved in version 1.4.3.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.6%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2024-7476
  • Lunary » Lunary » Version: 1.2.10
    cpe:2.3:a:lunary:lunary:1.2.10
  • Lunary » Lunary » Version: 1.2.11
    cpe:2.3:a:lunary:lunary:1.2.11
  • Lunary » Lunary » Version: 1.2.12
    cpe:2.3:a:lunary:lunary:1.2.12
  • Lunary » Lunary » Version: 1.2.13
    cpe:2.3:a:lunary:lunary:1.2.13
  • Lunary » Lunary » Version: 1.2.14
    cpe:2.3:a:lunary:lunary:1.2.14
  • Lunary » Lunary » Version: 1.2.15
    cpe:2.3:a:lunary:lunary:1.2.15
  • Lunary » Lunary » Version: 1.2.16
    cpe:2.3:a:lunary:lunary:1.2.16
  • Lunary » Lunary » Version: 1.2.17
    cpe:2.3:a:lunary:lunary:1.2.17
  • Lunary » Lunary » Version: 1.2.18
    cpe:2.3:a:lunary:lunary:1.2.18
  • Lunary » Lunary » Version: 1.2.19
    cpe:2.3:a:lunary:lunary:1.2.19
  • Lunary » Lunary » Version: 1.2.20
    cpe:2.3:a:lunary:lunary:1.2.20
  • Lunary » Lunary » Version: 1.2.21
    cpe:2.3:a:lunary:lunary:1.2.21
  • Lunary » Lunary » Version: 1.2.22
    cpe:2.3:a:lunary:lunary:1.2.22
  • Lunary » Lunary » Version: 1.2.23
    cpe:2.3:a:lunary:lunary:1.2.23
  • Lunary » Lunary » Version: 1.2.24
    cpe:2.3:a:lunary:lunary:1.2.24
  • Lunary » Lunary » Version: 1.2.25
    cpe:2.3:a:lunary:lunary:1.2.25
  • Lunary » Lunary » Version: 1.2.26
    cpe:2.3:a:lunary:lunary:1.2.26
  • Lunary » Lunary » Version: 1.2.27
    cpe:2.3:a:lunary:lunary:1.2.27
  • Lunary » Lunary » Version: 1.2.28
    cpe:2.3:a:lunary:lunary:1.2.28
  • Lunary » Lunary » Version: 1.2.29
    cpe:2.3:a:lunary:lunary:1.2.29
  • Lunary » Lunary » Version: 1.2.30
    cpe:2.3:a:lunary:lunary:1.2.30
  • Lunary » Lunary » Version: 1.2.31
    cpe:2.3:a:lunary:lunary:1.2.31
  • Lunary » Lunary » Version: 1.2.32
    cpe:2.3:a:lunary:lunary:1.2.32
  • Lunary » Lunary » Version: 1.2.33
    cpe:2.3:a:lunary:lunary:1.2.33
  • Lunary » Lunary » Version: 1.2.34
    cpe:2.3:a:lunary:lunary:1.2.34
  • Lunary » Lunary » Version: 1.2.7
    cpe:2.3:a:lunary:lunary:1.2.7
  • Lunary » Lunary » Version: 1.2.8
    cpe:2.3:a:lunary:lunary:1.2.8
  • Lunary » Lunary » Version: 1.2.9
    cpe:2.3:a:lunary:lunary:1.2.9
  • Lunary » Lunary » Version: 1.3.0
    cpe:2.3:a:lunary:lunary:1.3.0
  • Lunary » Lunary » Version: 1.3.1
    cpe:2.3:a:lunary:lunary:1.3.1
  • Lunary » Lunary » Version: 1.3.10
    cpe:2.3:a:lunary:lunary:1.3.10
  • Lunary » Lunary » Version: 1.3.11
    cpe:2.3:a:lunary:lunary:1.3.11
  • Lunary » Lunary » Version: 1.3.2
    cpe:2.3:a:lunary:lunary:1.3.2
  • Lunary » Lunary » Version: 1.3.3
    cpe:2.3:a:lunary:lunary:1.3.3
  • Lunary » Lunary » Version: 1.3.4
    cpe:2.3:a:lunary:lunary:1.3.4
  • Lunary » Lunary » Version: 1.3.5
    cpe:2.3:a:lunary:lunary:1.3.5
  • Lunary » Lunary » Version: 1.3.6
    cpe:2.3:a:lunary:lunary:1.3.6
  • Lunary » Lunary » Version: 1.3.7
    cpe:2.3:a:lunary:lunary:1.3.7
  • Lunary » Lunary » Version: 1.3.8
    cpe:2.3:a:lunary:lunary:1.3.8
  • Lunary » Lunary » Version: 1.3.9
    cpe:2.3:a:lunary:lunary:1.3.9
  • Lunary » Lunary » Version: 1.4.0
    cpe:2.3:a:lunary:lunary:1.4.0
  • Lunary » Lunary » Version: 1.4.1
    cpe:2.3:a:lunary:lunary:1.4.1
  • Lunary » Lunary » Version: 1.4.2
    cpe:2.3:a:lunary:lunary:1.4.2


Contact Us

Shodan ® - All rights reserved