CVE-2024-27288: FIT2CLOUD 1panel

Low severity, CVSS 3.1. EPSS: 0.5% chance of exploitation in the next 30 days.

1Panel is an open source Linux server operation and maintenance management panel. Prior to version 1.10.1-lts, users can use Burp to obtain unauthorized access to the console page. The vulnerability has been fixed in v1.10.1-lts. There are no known workarounds.

Affected products

  • FIT2CLOUD 1panel: before 1.10.1-lts (fixed in 1.10.1-lts)

Published 2024-03-06. Last modified 2026-06-17.