VYPR
Unrated severityNVD Advisory· Published May 27, 2025· Updated Nov 3, 2025

Livestatus Injection in dynmaps

CVE-2024-38866

Description

Improper neutralization of input in Nagvis before version 1.9.47 which can lead to livestatus injection

Affected products

2
  • Nagvis/Nagvisllm-fuzzy
    Range: <=1.9.46
  • Nagvis/Nagvisv5
    Range: 1.9.0

Patches

1

Vulnerability mechanics

Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

2

News mentions

0

No linked articles in our index yet.