logo

CSA Warns Of CVE-2024-43441 And Other Vulnerabilities

ID: a27f22c3-6528-59a2-912d-4227600ee57b

STIX ID: report--a27f22c3-6528-59a2-912d-4227600ee57b

Feed Name: Cyble Blog

Threat Score
70/100

Date Published: 2025-11-17

Date Updated: 2026-07-20

...
...

**Executive Summary:** The Cyber Security Agency of Singapore alerted to three critical Apache vulnerabilities — CVE-2024-43441 (authentication bypass in Apache HugeGraph), CVE-2024-45387 (SQL injection in Apache Traffic Control), and CVE-2024-52046 (remote code execution in Apache MINA via unsafe deserialization). Affected users should upgrade to the fixed versions (HugeGraph ≥1.5.0; Traffic Control >8.0.1; MINA 2.0.27/2.1.10/2.24) and, for MINA, explicitly restrict allowed classes in the ObjectSerializationDecoder; the report provides mitigation guidance but does not document active exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.