Critical severity9.1NVD Advisory· Published Aug 6, 2024· Updated Jun 17, 2026
CVE-2024-41270
CVE-2024-41270
Description
An issue discovered in the RunHTTPServer function in Gorush v1.18.4 allows attackers to intercept and manipulate data due to use of deprecated TLS version.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
github.com/appleboy/gorushGo | < 1.18.5 | 1.18.5 |
Affected products
3Patches
Vulnerability mechanics
References
5- gist.github.com/nyxfqq/cfae38fada582a0f576d154be1aeb1fcnvdThird Party AdvisoryWEB
- github.com/advisories/GHSA-p3pf-mff8-3h47ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2024-41270ghsaADVISORY
- github.com/appleboy/gorush/commit/067cb597e485e40b790a267187bf7f00730b1c4bghsaWEB
- github.com/appleboy/gorush/issues/792ghsaWEB
News mentions
0No linked articles in our index yet.