Improper access control vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an unauthenticated user to access the application's functionalities without the need for credentials.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-16913 Improper access control vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an unauthenticated user to access the application's functionalities without the need for credentials.
Fixes

Solution

Upgrade Alma Blog to version 2.2.


Workaround

No workaround given by the vendor.

History

Wed, 15 Oct 2025 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Alma
Alma alma Blog
CPEs cpe:2.3:a:alma:alma_blog:*:*:*:*:*:*:*:*
Vendors & Products Alma
Alma alma Blog

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-01T18:26:30.513Z

Reserved: 2024-02-01T08:38:59.529Z

Link: CVE-2024-1144

cve-icon Vulnrichment

Updated: 2024-08-01T18:26:30.513Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-19T12:15:07.910

Modified: 2025-10-15T18:04:40.513

Link: CVE-2024-1144

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T22:31:52Z