CVE-2021-4430
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Nov 6, 2023
Updated: May 17, 2024
CWE ID 200
Summary
CVE-2021-4430 is a newly identified vulnerability that affects the Ortus Solutions ColdBox Elixir 3.1.6 component, specifically the ENV Variable Handler located in src/defaultConfig.js. This issue results in information disclosure, making it a potential security risk. The upgrade to version 3.1.7 resolves this problem, with the patch identifier being a3aa62daea2e44c76d08d1eac63768cd928cd69e. It is strongly recommended to apply the update as soon as possible, and the vulnerability has been assigned the identifier VDB-244485.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Ortus Solutions