High severity8.8NVD Advisory· Published Aug 15, 2024· Updated Jun 17, 2026
CVE-2024-42681
CVE-2024-42681
Description
Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Task ID component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
com.xuxueli:xxl-job-coreMaven | < 2.4.2 | 2.4.2 |
Affected products
3- xxl-job/xxl-jobdescription
Patches
Vulnerability mechanics
References
4- github.com/xuxueli/xxl-job/issues/3516nvdExploitIssue TrackingWEB
- github.com/advisories/GHSA-cpfp-m5qw-c4r3ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2024-42681ghsaADVISORY
- github.com/xuxueli/xxl-job/commit/a2dc9011310628f3e18c3a5095e7e6a946d017bdghsaWEB
News mentions
0No linked articles in our index yet.