Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54311 | An issue was discovered in Appsmith before 1.51. Users invited as "App Viewer" incorrectly have access to development information of a workspace (specifically, a list of datasources in a workspace they're a member of). This information disclosure does not expose sensitive data in the datasources, such as database passwords and API Keys. |
Tue, 08 Jul 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Appsmith
Appsmith appsmith |
|
| CPEs | cpe:2.3:a:appsmith:appsmith:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Appsmith
Appsmith appsmith |
Thu, 27 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-863 | |
| Metrics |
cvssV3_1
|
Wed, 26 Mar 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in Appsmith before 1.51. Users invited as "App Viewer" incorrectly have access to development information of a workspace (specifically, a list of datasources in a workspace they're a member of). This information disclosure does not expose sensitive data in the datasources, such as database passwords and API Keys. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-27T13:28:11.936Z
Reserved: 2024-12-13T00:00:00.000Z
Link: CVE-2024-55965
Updated: 2025-03-27T13:27:57.925Z
Status : Analyzed
Published: 2025-03-26T21:15:23.063
Modified: 2025-07-08T17:35:30.287
Link: CVE-2024-55965
No data.
OpenCVE Enrichment
No data.
EUVD