API Platform
by Akamai
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-2796 | Cri | 0.60 | 9.3 | 0.00 | Apr 18, 2024 | A server-side request forgery (SSRF) was discovered in the Akana API Platform in versions prior to and including 2022.1.3. Reported by Jakob Antonsson. | ||
| CVE-2024-3930 | Med | 0.41 | 6.3 | 0.00 | Jul 30, 2024 | In versions of Akana API Platform prior to 2024.1.0 a flaw resulting in XML External Entity (XXE) was discovered. | ||
| CVE-2024-5249 | Med | 0.35 | 5.4 | 0.00 | Jul 30, 2024 | In versions of Akana API Platform prior to 2024.1.0, SAML tokens can be replayed. | ||
| CVE-2024-5250 | Low | 0.23 | 3.5 | 0.00 | Jul 30, 2024 | In versions of Akana API Platform prior to 2024.1.0 overly verbose errors can be found in SAML integrations |
- risk 0.60cvss 9.3epss 0.00
A server-side request forgery (SSRF) was discovered in the Akana API Platform in versions prior to and including 2022.1.3. Reported by Jakob Antonsson.
- risk 0.41cvss 6.3epss 0.00
In versions of Akana API Platform prior to 2024.1.0 a flaw resulting in XML External Entity (XXE) was discovered.
- risk 0.35cvss 5.4epss 0.00
In versions of Akana API Platform prior to 2024.1.0, SAML tokens can be replayed.
- risk 0.23cvss 3.5epss 0.00
In versions of Akana API Platform prior to 2024.1.0 overly verbose errors can be found in SAML integrations