CVE-2024-54851

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Jan 29, 2025
Updated: Jan 30, 2025
CWE ID 352

Summary

CVE-2024-54851 is a newly identified vulnerability affecting Teedy, a software component used in various applications, up to version 1.12. This issue allows an attacker to conduct Cross-Site Request Forgery (CSRF) attacks against unsuspecting users. CSRF is a type of cyber attack where an attacker tricks the victim's web browser into making unintended requests, often leading to unauthorized actions on behalf of the victim. In the case of Teedy, the absence of CSRF protection allows attackers to exploit this vulnerability to execute malicious actions on the victim's behalf, potentially resulting in data theft or system compromise. Users are advised to upgrade to the latest, secure version of Teedy as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share