CVE-2024-9437
CVSS 3.0 Score 7.5 of 10 (high)
Details
Published Mar 20, 2025
CWE ID 400
Summary
CVE-2024-9437: A new vulnerability has been identified in SuperAGI version v0.0.14, which allows for an unauthenticated Denial of Service (DoS) attack. By appending characters like dashes (-) to the end of a multipart boundary in an HTTP request, attackers can cause the server to continuously process each character, resulting in excessive resource consumption and service unavailability. This issue affects all users of the service without requiring any user interaction.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.