Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Timvisee

#26225of 53,622
9.8Total CVSS
Vulnerabilities · 1
PT-2024-23614
9.8
2024-03-29
Qdrant · Qdrant · CVE-2024-3078
**Name of the Vulnerable Software and Affected Versions** Qdrant versions 1.6.1 through 1.8.2 **Description** A critical issue was found in Qdrant, affecting the Full Snapshot REST API. This issue leads to path traversal due to some unknown processing of the file lib/collection/src/collection/snapshots.rs. The estimated number of potentially affected devices worldwide is not available. There is no information about real-world incidents where this issue was exploited. **Recommendations** Upgrade to version 1.8.3 to address this issue. As a temporary workaround, consider restricting access to the Full Snapshot API until the upgrade is applied.