Vulnerabilities > Lunary > High

DATE CVE VULNERABILITY TITLE RISK
2024-04-16 CVE-2024-1738 Unspecified vulnerability in Lunary
An incorrect authorization vulnerability exists in the lunary-ai/lunary repository, specifically within the evaluations.get route in the evaluations API endpoint.
network
low complexity
lunary
7.5
2024-04-10 CVE-2024-1902 Unspecified vulnerability in Lunary
lunary-ai/lunary is vulnerable to a session reuse attack, allowing a removed user to change the organization name without proper authorization.
network
low complexity
lunary
7.5