{ "id": "CVE-2024-40441", "sourceIdentifier": "cve@mitre.org", "published": "2024-09-23T17:15:13.580", "lastModified": "2024-09-23T17:15:13.580", "vulnStatus": "Received", "cveTags": [], "descriptions": [ { "lang": "en", "value": "An issue in Doccano Open source annotation tools for machine learning practitioners v.1.8.4 and Doccano Auto Labeling Pipeline module to annotate a document automatically v.0.1.23 allows a remote attacker to escalate privileges via the model_attribs parameter." } ], "metrics": {}, "references": [ { "url": "https://github.com/doccano/auto-labeling-pipeline/releases/tag/v0.1.23", "source": "cve@mitre.org" }, { "url": "https://github.com/doccano/doccano/releases/tag/v1.8.4", "source": "cve@mitre.org" }, { "url": "https://github.com/gian2dchris/CVEs/tree/main/CVE-2024-40441", "source": "cve@mitre.org" } ] }