CVE-2024-27950: Sirv

High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in Sirv CDN and Image Hosting Sirv sirv.This issue affects Sirv: from n/a through <= 7.2.0.

Affected products

  • Sirv Sirv: before 7.2.1 (fixed in 7.2.1)

Published 2024-03-01. Last modified 2026-06-17.