CVE Database
/

CVE-2024-45309

Back to search

CVE-2024-45309

Published: Oct 21, 2024

Modified: Oct 21, 2024

PUBLISHED

Description

OneDev is a Git server with CI/CD, kanban, and packages. A vulnerability in versions prior to 11.0.9 allows unauthenticated users to read arbitrary files accessible by the OneDev server process. This issue has been fixed in version 11.0.9.

VendorProductVersions

theonedev

onedev

affected
< 11.0.9

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now