CVSS 3.1 Score 4.3 of 10 (medium)


Published May 3, 2024
CWE ID 862


CVE-2024-33925 is a Missing Authorization vulnerability found in Adrian Mörchen Embed Google Fonts, specifically affecting versions from n/a through 3.1.0. The vulnerability has a risk score of 5 and a base severity of MEDIUM. It requires low privileges and does not require user interaction, making it easily exploitable over a network. The potential impact of this vulnerability is low integrity and no confidentiality impact. To remediate the issue, users should update Embed Google Fonts to a version that is not affected by the vulnerability.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2024-33925 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options