CVE-2021-4430

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 6, 2023
Updated: May 17, 2024
CWE ID 200

Summary

CVE-2021-4430 is a newly identified vulnerability that affects the Ortus Solutions ColdBox Elixir 3.1.6 component, specifically the ENV Variable Handler located in src/defaultConfig.js. This issue results in information disclosure, making it a potential security risk. The upgrade to version 3.1.7 resolves this problem, with the patch identifier being a3aa62daea2e44c76d08d1eac63768cd928cd69e. It is strongly recommended to apply the update as soon as possible, and the vulnerability has been assigned the identifier VDB-244485.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share