Junglewise Threat Intelligence

CVE-2024-27920: GO-2024-2645 - Nuclei allows unsigned code template execution through workflows in github.com/projectdiscovery/nuclei

CVE-2024-27920 · Severity: low · CVSS 3.1 · Published 2024-06-04

Technologies: github.com/projectdiscovery/nuclei/v3 (Go). Vendors: Go.

Executive brief

Nuclei allows unsigned code template execution through workflows in github.com/projectdiscovery/nuclei

Affected products

  • Go github.com/projectdiscovery/nuclei/v2
  • Go github.com/projectdiscovery/nuclei
  • Go github.com/projectdiscovery/nuclei/v3

Related threats