CVE-2024-36107
MEDIUM5.3EPSS 0.14%MinIO information disclosure vulnerability in github.com/minio/minio
Published: 5/29/2024Modified: 2/4/2026
Description
MinIO information disclosure vulnerability in github.com/minio/minio
Affected packages (3)
- Bitnami/miniofrom 0, < 2024.5.27
- Go/github.com/minio/miniofrom 0, < 0.0.0-20240527191746-e0fe7cc39172
- Go/github.com/minio/miniofrom 0, < 0.0.0-20240527191746-e0fe7cc39172
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | MEDIUM5.3 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
References (7)
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2024-36107
- PATCHhttps://github.com/minio/minio
- WEBhttps://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/If-Modified-Since
- WEBhttps://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/If-Unmodified-Since
- WEBhttps://github.com/minio/minio/commit/e0fe7cc391724fc5baa85b45508f425020fe4272
- WEBhttps://github.com/minio/minio/pull/19810
- WEBhttps://github.com/minio/minio/security/advisories/GHSA-95fr-cm4m-q5p9