CVE-2024-8024 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A CORS misconfiguration vulnerability exists in netease-youdao/qanything version 1.4.1. This vulnerability allows an attacker to bypass the Same-Origin Policy,…
High CVSS: 7.5

CVE-2024-8024

A CORS misconfiguration vulnerability exists in netease-youdao/qanything version 1.4.1. This vulnerability allows an attacker to bypass the Same-Origin Policy, potentially leading to sensitive information exposure. Properly implementing a restrictive CORS policy is crucial to prevent such security issues.
Vendor
Youdao
Product
Qanything
CWE
CWE-346
Yayın Tarihi
2025-03-20 10:15:39
Güncelleme
2025-08-01 01:45:39
Source Identifier
security@huntr.dev
KEV Date Added
-

Kategoriler

Referanslar