CVE-2024-31398: Cybozu Garoon

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.0.0 to 5.15.2. If this vulnerability is exploited, a user who can log in to the product may obtain information on the list of users.

Affected products

  • Cybozu Garoon: from 5.0.0, up to and including 5.15.2

Published 2024-06-11. Last modified 2026-06-17.