Somchandra17

2 exploits Active since May 2026
CVE-2024-46508 GITHUB HIGH shell WRITEUP
yeti-platform <2.1.12 - Auth Bypass
yeti-platform yeti before 2.1.12 allows attackers to generate valid JWT tokens is the secret is not changed (by setting YETI_AUTH_SECRET_KEY to a value other than SECRET).
1 stars
CVSS 7.5
CVE-2024-46507 VULNCHECK_XDB HIGH WRITEUP
Yeti Platform < 2.1.12 - Server-Side Template Injection
A SSTI (server side template injection) vulnerability in the custom template export function in yeti-platform yeti before 2.1.12 allows attackers to execute code on the application server.
CVSS 7.3