CVE-2024-9415
CVSS 3.0 Score 8.8 of 10 (high)
Details
Published Mar 20, 2025
CWE ID 22
Summary
CVE-2024-9415 is a newly disclosed Path Traversal vulnerability affecting version 0.0.14 of the transformeroptimus/superagi package. This issue resides in the file upload functionality, enabling an attacker to upload malicious files to the server, potentially leading to remote code execution or file overwriting. By manipulating the file path during the upload process, an adversary can bypass security restrictions and gain unauthorized access to sensitive files or execute arbitrary code, posing a significant threat to the targeted system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.