Insecure Hashing Algorithm in Navidrome Affects User Account Security
CVE-2024-41259

Currently unrated

Key Information:

Vendor

Navidrome

Status
Vendor
CVE Published:
1 August 2024

What is CVE-2024-41259?

The service provided by Gravatar within Navidrome v0.52.3 utilizes an insecure hashing algorithm, enabling potential attackers to alter user account information. This vulnerability can lead to unauthorized access and manipulation of user data, emphasizing the need for strong hashing practices in software development to safeguard user privacy and security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

.