Junglewise Threat Intelligence

CVE-2024-42490: GO-2024-3085 - GoAuthentik vulnerable to Insufficient Authorization for several API endpoints in goauthentik.io

CVE-2024-42490 · Severity: low · CVSS 3.1 · Published 2024-08-30

Technologies: goauthentik.io (Go). Vendors: Go.

Executive brief

GoAuthentik vulnerable to Insufficient Authorization for several API endpoints in goauthentik.io

Affected products

  • Go goauthentik.io

Related threats