CVE-2024-27920

HIGH EPSS 32.9%
Published Mar 15, 20242y ago · Modified Jun 17, 20261w ago
7.4 CVSS 3.1
High
Find Similar
Published Mar 15, 2024 2y ago
Last Modified Jun 17, 2026 1w ago

Description

projectdiscovery/nuclei is a fast and customisable vulnerability scanner based on simple YAML based DSL. A significant security oversight was identified in Nuclei v3, involving the execution of unsigned code templates through workflows. This vulnerability specifically affects users utilizing custom workflows, potentially allowing the execution of malicious code on the user's system. This advisory outlines the impacted users, provides details on the security patch, and suggests mitigation strategies. The vulnerability is addressed in Nuclei v3.2.0. Users are strongly recommended to update to this version to mitigate the security risk. Users should refrain from using custom workflows if unable to upgrade immediately. Only trusted, verified workflows should be executed.

CVSS Details

Base Score
7.4
Exploitability
1.0
Impact
5.8
Vector string
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N
Attack Vector Local
Attack Complexity High
Privileges Required None
User Interaction Required
Scope Changed
Confidentiality High
Integrity High
Availability None

Threat Intelligence

EPSS Exploit Probability
32.9% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available

Weaknesses 1

CWE-78 OS Command Injection Injection

Affected Products 1

VendorProductVersionRange
projectdiscoverynuclei*≥3.0.0  –  <3.2.0

References 5

  • docs.projectdiscovery.io https://docs.projectdiscovery.io/templates/protocols/code
    Technical Description
  • docs.projectdiscovery.io https://docs.projectdiscovery.io/templates/reference/template-signing
    Technical Description
  • docs.projectdiscovery.io https://docs.projectdiscovery.io/templates/workflows/overview
    Technical Description
  • github.com https://github.com/projectdiscovery/nuclei/pull/4822
    Issue Tracking
  • github.com https://github.com/projectdiscovery/nuclei/security/advisories/GHSA-w5wx-6g2r-r78q
    Vendor Advisory

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.