{ "id": "CVE-2024-38458", "sourceIdentifier": "cve@mitre.org", "published": "2024-06-16T15:15:51.770", "lastModified": "2024-07-16T21:15:11.060", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Xenforo before 2.2.16 allows code injection." }, { "lang": "es", "value": "Xenforo anterior a 2.2.16 permite la inyecci\u00f3n de c\u00f3digo." } ], "metrics": {}, "references": [ { "url": "http://seclists.org/fulldisclosure/2024/Jul/12", "source": "cve@mitre.org" }, { "url": "https://xenforo.com/community/threads/xenforo-2-1-15-patch-1-2-2-16-patch-2-and-xenforo-media-gallery-2-1-9-2-2-6-released-includes-security-fixes.222133/", "source": "cve@mitre.org" } ] }