Improper access control vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an unauthenticated user to access the application's functionalities without the need for credentials.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-16913 | Improper access control vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an unauthenticated user to access the application's functionalities without the need for credentials. |
Fixes
Solution
Upgrade Alma Blog to version 2.2.
Workaround
No workaround given by the vendor.
References
History
Wed, 15 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Alma
Alma alma Blog |
|
| CPEs | cpe:2.3:a:alma:alma_blog:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Alma
Alma alma Blog |
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-01T18:26:30.513Z
Reserved: 2024-02-01T08:38:59.529Z
Link: CVE-2024-1144
Updated: 2024-08-01T18:26:30.513Z
Status : Analyzed
Published: 2024-03-19T12:15:07.910
Modified: 2025-10-15T18:04:40.513
Link: CVE-2024-1144
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:31:52Z
EUVD