CVE-2024-4219: BeyondTrust Beyondinsight
Critical severity, CVSS 9.1. EPSS: 0.2% chance of exploitation in the next 30 days.
Prior to 23.2, it is possible to perform arbitrary Server-Side requests via HTTP-based connectors within BeyondInsight, resulting in a server-side request forgery vulnerability.
Affected products
- BeyondTrust Beyondinsight: before 23.2 (fixed in 23.2)
Published 2024-06-04. Last modified 2026-06-17.