Get real-time updates on Telegram
CVE-2024-36107: github.com/minio/minio (exact versions not specified)
CVE-2024-36107 affects github.com/minio/minio. EPSS 0.00629 (percentile 0.48427), scored 2026-10-06. Fixed version: 0.0.0-20240527191746-e0fe7cc39172. Fixed version: e0fe7cc391724fc5baa85b45508f425020fe4272.
Affected technology
github.com/minio/minio · Exact affected versions not specified by the source
Vendor not specified by the source
Component: Not specified by the source
Attack conditions (OSV, CVSS 3.1): Network (remote) · No privileges required · No user interaction required
What an attacker can do
The source reports that an attacker could access information they should not be able to access. OSV’s CVSS 3.1 assessment rates confidentiality impact as low; integrity and availability impact as none.
- Product
- github.com/minio/minio
- CCR priority
- 0.2 /100 (P5)
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N · OSV.dev
- EPSS
- 0.00629 · percentile 0.48532 · 2026-10-08
- KEV
- no
Provenance
- FIRST EPSS daily exploit-probability · Source record · observed 2026-10-08 17:36:22.845483+00:00 UTC
- OSV.dev · Source record · observed 2026-10-08 08:57:13.774521+00:00 UTC
- OSV.dev · Source record · observed 2026-10-08 08:57:13.774521+00:00 UTC
- OSV.dev · Source record · observed 2026-10-08 08:57:13.774521+00:00 UTC
Stable permalink: https://cybercodered.org/item/cve-cve-2024-36107.html