CVE-2024-55070: Mealie

Low severity, CVSS 3.1. EPSS: 0.3% chance of exploitation in the next 30 days.

A Broken Object Level Authorization vulnerability in the component /households/permissions of hay-kot mealie v2.2.0 allows group managers to edit their own permissions.

Affected products

  • Mealie Mealie: version 2.2.0 only

Published 2025-03-27. Last modified 2026-06-17.