CVE-2024-9437

CVSS 3.0 Score 7.5 of 10 (high)

Details

Published Mar 20, 2025
CWE ID 400

Summary

CVE-2024-9437: A new vulnerability has been identified in SuperAGI version v0.0.14, which allows for an unauthenticated Denial of Service (DoS) attack. By appending characters like dashes (-) to the end of a multipart boundary in an HTTP request, attackers can cause the server to continuously process each character, resulting in excessive resource consumption and service unavailability. This issue affects all users of the service without requiring any user interaction.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share