CVE-2024-27480

givanz VvvebJs 1.7.2 is vulnerable to Insecure File Upload.
Configurations

Configuration 1 (hide)

cpe:2.3:a:vvveb:vvvebjs:1.7.2:*:*:*:*:*:*:*

History

02 Jan 2026, 22:15

Type Values Removed Values Added
References () https://gist.github.com/joaoviictorti/abb2d1929c29d09c13c60bb45f28a8ff - Exploit, Issue Tracking () https://gist.github.com/joaoviictorti/abb2d1929c29d09c13c60bb45f28a8ff - Exploit, Issue Tracking

02 Jan 2026, 14:06

Type Values Removed Values Added
First Time Vvveb vvvebjs
Vvveb
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CPE cpe:2.3:a:vvveb:vvvebjs:1.7.2:*:*:*:*:*:*:*
CWE CWE-434
References () https://gist.github.com/joaoviictorti/abb2d1929c29d09c13c60bb45f28a8ff - () https://gist.github.com/joaoviictorti/abb2d1929c29d09c13c60bb45f28a8ff - Exploit, Issue Tracking

29 Dec 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-29 21:15

Updated : 2026-01-02 22:15


NVD link : CVE-2024-27480

Mitre link : CVE-2024-27480

CVE.ORG link : CVE-2024-27480


JSON object : View

Products Affected

vvveb

  • vvvebjs
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type