Vulnerabilities > Aimstack > AIM > 3.19.3

DATE CVE VULNERABILITY TITLE RISK
2025-03-20 CVE-2024-8769 Path Traversal vulnerability in Aimstack AIM
A vulnerability in the `LockManager.release_locks` function in aimhubio/aim (commit bb76afe) allows for arbitrary file deletion through relative path traversal.
network
low complexity
aimstack CWE-22
critical
9.1
2024-09-14 CVE-2024-8863 Cross-site Scripting vulnerability in Aimstack AIM
A vulnerability, which was classified as problematic, was found in aimhubio aim up to 3.24.
network
low complexity
aimstack CWE-79
5.4
2024-07-29 CVE-2024-6578 Unspecified vulnerability in Aimstack AIM 3.19.3
A stored cross-site scripting (XSS) vulnerability exists in aimhubio/aim version 3.19.3.
network
low complexity
aimstack
5.4
2024-07-08 CVE-2024-6227 Unspecified vulnerability in Aimstack AIM 3.19.3
A vulnerability in aimhubio/aim version 3.19.3 allows an attacker to cause an infinite loop by configuring the remote tracking server to point at itself.
network
low complexity
aimstack
7.5