CVE-2024-24551: Bludit
High severity, CVSS 8.8. EPSS: 0.8% chance of exploitation in the next 30 days.
A security vulnerability has been identified in Bludit, allowing authenticated attackers to execute arbitrary code through the Image API. This vulnerability arises from improper handling of file uploads, enabling malicious actors to upload and execute PHP files.
Affected products
- Bludit Bludit: up to and including 3.15.0
Published 2024-06-24. Last modified 2026-06-17.