{"id":"GHSA-qxgx-hvg3-v92w","summary":"ai-admin-graphql has a Denial of service vulnerability in SaaS and marketplace setups","details":"All SaaS and marketplace setups using Aimeos version from 2024.04 up to 2024.07.1 are affected by a potential denial of service attack","aliases":["CVE-2024-47173"],"modified":"2024-10-24T22:06:36.312546Z","published":"2024-10-24T17:48:40Z","database_specific":{"github_reviewed_at":"2024-10-24T17:48:40Z","nvd_published_at":"2024-10-24T19:15:14Z","cwe_ids":["CWE-270"],"severity":"MODERATE","github_reviewed":true},"references":[{"type":"WEB","url":"https://github.com/aimeos/ai-admin-graphql/security/advisories/GHSA-qxgx-hvg3-v92w"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-47173"},{"type":"PACKAGE","url":"https://github.com/aimeos/ai-admin-graphql"}],"affected":[{"package":{"name":"aimeos/ai-admin-graphql","ecosystem":"Packagist","purl":"pkg:composer/aimeos/ai-admin-graphql"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"2024.04.1"},{"fixed":"2024.07.2"}]}],"versions":["2024.04.1","2024.04.2","2024.04.3","2024.04.4","2024.04.5","2024.04.6","2024.04.7","2024.07.1"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2024/10/GHSA-qxgx-hvg3-v92w/GHSA-qxgx-hvg3-v92w.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H"}]}