CVE-2024-9415

CVSS 3.0 Score 8.8 of 10 (high)

Details

Published Mar 20, 2025
CWE ID 22

Summary

CVE-2024-9415 is a newly disclosed Path Traversal vulnerability affecting version 0.0.14 of the transformeroptimus/superagi package. This issue resides in the file upload functionality, enabling an attacker to upload malicious files to the server, potentially leading to remote code execution or file overwriting. By manipulating the file path during the upload process, an adversary can bypass security restrictions and gain unauthorized access to sensitive files or execute arbitrary code, posing a significant threat to the targeted system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share