CVE-2024-37019: Northern.tech Mender
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Northern.tech Mender Enterprise before 3.6.4 and 3.7.x before 3.7.4 has Weak Authentication.
Affected products
- Northern.tech Mender: before 3.6.4 (fixed in 3.6.4); from 3.7.0, before 3.7.4 (fixed in 3.7.4)
Published 2024-06-03. Last modified 2026-06-17.