Flarum before 1.8.16 contains a password reset token expiry bypass vulnerability that allows unauthenticated attackers t
Gogs is an open source self-hosted Git service. Prior to 0.14.3, password-reset tokens are generated using conf.Auth.Act
IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to o
sigstore-go is a Go library for Sigstore signing and verification. Prior to 1.2.1, sigstore-go does not check a bundle s
Frequently Asked Questions
What is CWE-324?
CWE-324 (CWE-324) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-324?
There are 4 CVE records associated with CWE-324 in our database. Of these, 0 are critical severity, 1 are high severity, and 2 are medium severity.
How can I protect against CWE-324 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-324 using AI-powered security agents.
Detect CWE-324 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-324 vulnerabilities across your infrastructure.
Get Started