CVE-2024-22209

Published

Severity

CVSS v3:
8.8 HIGH
CVSS v2:
N/A

Description

Open edX Platform is a service-oriented platform for authoring and delivering online learning. A user with a JWT and more limited scopes could call endpoints exceeding their access. This vulnerability has been patched in commit 019888f.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:edx:edx-platform:*:*:*:*:*:*:*:*n/a2024-01-12*

External Links