Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-0283 | D-Tale is a visualizer for Pandas data structures. Users hosting versions D-Tale prior to 3.9.0 publicly can be vulnerable to server-side request forgery (SSRF), allowing attackers to access files on the server. Users should upgrade to version 3.9.0, where the `Load From the Web` input is turned off by default. The only workaround for versions earlier than 3.9.0 is to only host D-Tale to trusted users. |
Github GHSA |
GHSA-7hfx-h3j3-rwq4 | D-Tale server-side request forgery through Web uploads |
Tue, 17 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-06-17T20:29:14.066Z
Reserved: 2023-12-29T03:00:44.958Z
Link: CVE-2024-21642
Updated: 2024-08-01T22:27:35.919Z
Status : Modified
Published: 2024-01-05T22:15:43.190
Modified: 2024-11-21T08:54:47.160
Link: CVE-2024-21642
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA