vantage6-UI is the official user interface for the vantage6 server. In affected versions a number of security headers are not set. This issue has been addressed in commit `68dfa6614` which is expected to be included in future releases. Users are advised to upgrade when a new release is made. While an upgrade path is not available users may modify the docker image build to insert the headers into nginx.
References
Configurations
History
06 Aug 2025, 14:46
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:vantage6:vantage6-ui:*:*:*:*:*:*:*:* | |
First Time |
Vantage6
Vantage6 vantage6-ui |
|
References | () https://github.com/vantage6/vantage6-UI/security/advisories/GHSA-gwq3-pvwq-4c9w - Vendor Advisory | |
References | () https://github.com/vantage6/vantage6-UI/commit/68dfa661415182da0e5717bd58db3d00aedcbd2e - Patch | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
14 Mar 2024, 20:11
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-14 19:15
Updated : 2025-08-06 14:46
NVD link : CVE-2024-24562
Mitre link : CVE-2024-24562
JSON object : View
Products Affected
vantage6
- vantage6-ui
CWE
No CWE.