๐Ÿ” CVE Alert

CVE-2024-49400

CRITICAL 9.8
CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th

Tacquito prior to commit 07b49d1358e6ec0b5aa482fcd284f509191119e2 was not properly performing regex matches on authorized commands and arguments. Configured allowed commands/arguments were intended to require a match on the entire string, but instead only enforced a match on a sub-string. That would have potentially allowed unauthorized commands to be executed.

Vendor meta
Product tacquito
Published Oct 17, 2024
Last Updated Nov 1, 2024
Stay Ahead of the Next One

Get instant alerts for meta tacquito

Be the first to know when new critical vulnerabilities affecting meta tacquito are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Meta / Tacquito
0 < 07b49d1358e6ec0b5aa482fcd284f509191119e2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
facebook.com: https://www.facebook.com/security/advisories/cve-2024-49400