CVE-2024-10264 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

HTTP Request Smuggling vulnerability in netease-youdao/qanything version 1.4.1 allows attackers to exploit inconsistencies in the interpretation of HTTP request…
Critical CVSS: 9.8

CVE-2024-10264

HTTP Request Smuggling vulnerability in netease-youdao/qanything version 1.4.1 allows attackers to exploit inconsistencies in the interpretation of HTTP requests between a proxy and a server. This can lead to unauthorized access, bypassing security controls, session hijacking, data leakage, and potentially arbitrary code execution.
Vendor
Youdao
Product
Qanything
CWE
CWE-444
Yayın Tarihi
2025-03-20 10:15:15
Güncelleme
2025-08-01 10:51:56
Source Identifier
security@huntr.dev
KEV Date Added
-

Kategoriler

Referanslar