CNNVD-202508-2500 Information

CNNVD ID

CNNVD-202508-2500

CVE-2024-57491

  • CNNVD Published: 2025-08-20

Description (Chinese)

jobx是Datavane开源的一个使日程安排软件。 jobx v1.0.1-RELEASE及之前版本存在安全漏洞,该漏洞源于preHandle函数存在认证绕过漏洞,可能导致未授权访问敏感API。

Description (English)

Jobx is an open-source programmer for Datavane. There is a security loophole in the jobx v1.0.1-RELEASE and previous versions, which stems from the preHandle function ’ s authentication bypass, which may lead to unauthorized access to sensitive API.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Datavane

Published

2025-08-20

Last Modified

2026-02-24

References

https://github.com/datavane/jobx/issues/48 https://access.redhat.com/security/cve/cve-2024-57491 https://nvd.nist.gov/vuln/detail/CVE-2024-57491

Patch

https://github.com/datavane/jobx/releases

Share on: