Vulnerabilities > Rapid7 > Insight Platform

DATE CVE VULNERABILITY TITLE RISK
2024-09-09 CVE-2024-8042 Missing Authorization vulnerability in Rapid7 Insight Platform
Rapid7 Insight Platform versions between November 2019 and August 14, 2024 suffer from missing authorization issues whereby an attacker can intercept local requests to set the name and description of a new user group.
high complexity
rapid7 CWE-862
3.1