Gmod
Gmod Apollo: vulnerabilities and CVEs
Gmod Apollo has 4 published vulnerabilities, 0 of them in the last 12 months. 2 are rated critical and 0 are listed by CISA as actively exploited.
CVEs4
Last 12 months0
Critical2
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-24924 | Critical (9.3) | 0.56% | — | Mar 5, 2025 | Certain functionality within GMOD Apollo does not require authentication when passed with an administrative username |
| CVE-2025-23410 | Critical (9.3) | 0.66% | — | Mar 5, 2025 | When uploading organism or sequence data via the web interface, GMOD Apollo will unzip and inspect the files and will not check for path traversal in supported archive types. |
| CVE-2025-21092 | High (7.1) | 0.28% | — | Mar 5, 2025 | GMOD Apollo does not have sufficient logical or access checks when updating a user's information. This could result in an attacker being able to escalate privileges for themselves or others. |
| CVE-2025-20002 | Medium (6.9) | 0.31% | — | Mar 5, 2025 | After attempting to upload a file that does not meet prerequisites, GMOD Apollo will respond with local path information disclosure |