CVE-2024-9363
CVSS 3.0 Score 7.5 of 10 (high)
Details
Published Mar 20, 2025
CWE ID 23
Summary
CVE-2024-9363 is a newly disclosed vulnerability affecting the latest version of the Polyaxon platform. It enables unauthorized file deletion, allowing attackers to terminate critical containers and delete important files within them. This can result in denial of service, as the API container exits unexpectedly, disrupting related services and rendering the system inoperable. The vulnerability does not necessitate authentication or the use of UUID parameters.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.