VYPR
Medium severity6.5NVD Advisory· Published Apr 18, 2024· Updated Jun 17, 2026

CVE-2024-32470

CVE-2024-32470

Description

Tolgee is an open-source localization platform. When API key created by admin user is used it bypasses the permission check at all. This error was introduced in v3.57.2 and immediately fixed in v3.57.4.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Tolgee/Tolgeellm-fuzzy
    Range: >=3.57.2 <3.57.4
  • tolgee/tolgee-platformv5
    Range: >= 3.57.2, < 3.57.4

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.