CVE-2024-55965

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Mar 26, 2025
Updated: Mar 27, 2025
CWE ID 863

Summary

CVE-2024-55965 is a vulnerability affecting Appsmith before version 1.51. It allows App Viewers to gain unintended access to development information within a workspace, specifically a list of datasources. Although this issue does not directly expose sensitive data such as database passwords or API keys, it still poses a potential risk to the security and privacy of the affected workspaces. Appsmith urges users to update to the latest version to mitigate this information disclosure issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share