CVE-2024-31402: Cybozu Garoon

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Incorrect authorization vulnerability in Cybozu Garoon 5.0.0 to 5.15.2 allows a remote authenticated attacker to delete the data of Shared To-Dos.

Affected products

  • Cybozu Garoon: from 5.0.0, up to and including 5.15.2

Published 2024-06-11. Last modified 2026-06-17.