CVE-2024-46507: Yeti-Platform Yeti
High severity, CVSS 7.3. EPSS: 3.9% chance of exploitation in the next 30 days.
A SSTI (server side template injection) vulnerability in the custom template export function in yeti-platform yeti before 2.1.12 allows attackers to execute code on the application server.
Affected products
- Yeti-Platform Yeti: from 2.0, before 2.1.12 (fixed in 2.1.12)
Published 2026-05-08. Last modified 2026-06-17.