CSA Warns Of CVE-2024-43441 And Other Vulnerabilities
ID: a27f22c3-6528-59a2-912d-4227600ee57b
STIX ID: report--a27f22c3-6528-59a2-912d-4227600ee57b
Feed Name: Cyble Blog
**Executive Summary:** The Cyber Security Agency of Singapore alerted to three critical Apache vulnerabilities — CVE-2024-43441 (authentication bypass in Apache HugeGraph), CVE-2024-45387 (SQL injection in Apache Traffic Control), and CVE-2024-52046 (remote code execution in Apache MINA via unsafe deserialization). Affected users should upgrade to the fixed versions (HugeGraph ≥1.5.0; Traffic Control >8.0.1; MINA 2.0.27/2.1.10/2.24) and, for MINA, explicitly restrict allowed classes in the ObjectSerializationDecoder; the report provides mitigation guidance but does not document active exploitation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
