CVE-2024-2352
MEDIUM6.3EPSS 2.7%1Panel is vulnerable to command injection in github.com/1Panel-dev/1Panel
Published: 3/10/2024Modified: 3/3/2026
Description
1Panel is vulnerable to command injection in github.com/1Panel-dev/1Panel
Affected packages (2)
- Go/github.com/1Panel-dev/1Panelfrom 0, < 1.10.1-lts
- Go/github.com/1Panel-dev/1Panelfrom 0, < 1.10.1-lts
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | MEDIUM6.3 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
References (8)
- ADVISORYhttps://github.com/advisories/GHSA-x2vg-5wrf-vj6v
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2024-2352
- PATCHhttps://github.com/1Panel-dev/1Panel
- WEBhttps://github.com/1Panel-dev/1Panel/pull/4131
- WEBhttps://github.com/1Panel-dev/1Panel/pull/4131/commits/0edd7a9f6f5100aab98a0ea6e5deedff7700396c
- WEBhttps://github.com/1Panel-dev/1Panel/pull/4131#issue-2176105990
- WEBhttps://vuldb.com/?ctiid.256304
- WEBhttps://vuldb.com/?id.256304