Sploitus

CVE-2024-21645

No indexed exploits for CVE-2024-21645 yet

pyLoad is the free and open-source Download Manager written in pure Python. A log injection vulnerability was identified in `pyload` allowing any unauthenticated actor to inject arbitrary messages into the logs gathered by `pyload`. Forged or otherwise, corrupted log files can be used to cover an attacker’s tracks or even to implicate another party in the commission of a malicious act. This vulnerability has been patched in version 0.5.0b3.dev77.

Affected products
Pyload
Pyload
≤ 0.4.9, 0.5.0
Fix
Available
CVSS 3.1
5.3 MEDIUM
EPSS
24.5% (98th percentile)
Weakness
CWE-74
NVD status
Modified
Published
2024-01-08
CVE-2024-21645 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2024-21645 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2024-21645 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.