CVE-2024-1456
16.04.2024, 00:15
An S3 bucket takeover vulnerability was identified in the h2oai/h2o-3 repository. The issue involves the S3 bucket 'http://s3.amazonaws.com/h2o-training', which was found to be vulnerable to unauthorized takeover.Enginsight
Vendor | Product | Version |
---|---|---|
h2o | h2o | 3.45.0.6386 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration