CVE-2024-22047: Collectiveidea Audited
Low severity, CVSS 3.1. EPSS: 0.5% chance of exploitation in the next 30 days.
A race condition exists in Audited 4.0.0 to 5.3.3 that can result in an authenticated user to cause audit log entries to be attributed to another user.
Affected products
- Collectiveidea Audited: from 4.0.0, before 5.3.3 (fixed in 5.3.3)
Published 2024-01-04. Last modified 2026-07-14.