MEDIUMMaven

Micronaut management endpoints vulnerable to drive-by localhost attack

Micronaut management endpoints vulnerable to drive-by localhost attack

CVE-2024-23639Published 2 years agoUpdated 5 days agoSource: OSV

Affected packages

  • io.micronaut:micronaut-http-serverbefore 3.8.3
  • io.micronaut:micronaut-http-server-nettybefore 3.8.3
  • io.micronaut:micronaut-http-server-tckbefore 3.8.3

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Micronaut management endpoints vulnerable to drive-by localhost attack | HackTribune