CVE-2024-24590
Clear
CVE-2024-24590 poses a critical security risk in Allegro AI's ClearML client SDK. This vulnerability allows for deserialization of untrusted data, potentially enabling attackers to execute arbitrary code on a user's system through maliciously crafted artifacts. With an extremely high SOCRadar Vulnerability Risk Score (SVRS) of 85, this CVE demands immediate attention and remediation. The vulnerability affects versions 0.17.0 to 1.14.2 of the ClearML client SDK. The high SVRS score is due to factors such as active exploits being available and the vulnerability being observed "In The Wild" adding urgency beyond its CVSS score. Successfully exploiting this CVE could lead to complete system compromise, data breaches, and significant operational disruption. Organizations using affected versions of ClearML should prioritize patching or implementing mitigating controls to prevent exploitation.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.