CVE-2024-46507
A SSTI (server side template injection) vulnerability in the custom template export function in yeti-platform yeti before 2.1.12 allows attackers to execute code on the application server.
- Affected products
- Yeti Platform
- Yeti-platform Yeti
- < 2.1.12
- CVSS 3.1
- 7.3 HIGH
- EPSS
- 3.9% (90th percentile)
- Weakness
- CWE-94
- NVD status
- Analyzed
- Published
- 2026-05-08
CVE-2024-46507 at NVD
3 known exploits for CVE-2024-46507
Proof-of-concept code and exploit modules indexed by Sploitus