CVE-2024-1144

I

mproper access control vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an unauthenticated user to access the application's functionalities without the need for credentials.

Configurations

Configuration 1 (hide)

cpe:2.3:a:alma:alma_blog:*:*:*:*:*:*:*:*

History

15 Oct 2025, 18:04

Type Values Removed Values Added
References () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-alma-devklan-blog - () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-alma-devklan-blog - Third Party Advisory
CPE cpe:2.3:a:alma:alma_blog:*:*:*:*:*:*:*:*
First Time Alma alma Blog
Alma

21 Nov 2024, 08:49

Type Values Removed Values Added
References () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-alma-devklan-blog - () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-alma-devklan-blog -

Information

Published : 2024-03-19 12:15

Updated : 2025-10-15 18:04


NVD link : CVE-2024-1144

Mitre link : CVE-2024-1144

CVE.ORG link : CVE-2024-1144


JSON object : View

Products Affected
CWE
CWE-284

Improper Access Control