{"id":"CVE-2024-27288","aliases":["GHSA-26w3-q4j8-4xjp","GO-2024-2613"],"url":"https://o3.security/vulnerability/CVE-2024-27288","summary":"1Panel open source panel project has an unauthorized vulnerability.","details":"1Panel is an open source Linux server operation and maintenance management panel. Prior to version 1.10.1-lts, users can use Burp to obtain unauthorized access to the console page. The vulnerability has been fixed in v1.10.1-lts. There are no known workarounds.","published":"2024-03-06T18:23:50.053Z","modified":"2026-07-15T01:49:22.569165038Z","cvss":{"score":6.3,"severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Go","name":"github.com/1Panel-dev/1Panel","fixedVersion":"1.10.1-lts"}],"fix":null,"references":[{"type":"WEB","url":"https://github.com/1Panel-dev/1Panel/releases/tag/v1.10.1-lts"},{"type":"ADVISORY","url":"https://github.com/1Panel-dev/1Panel/security/advisories/GHSA-26w3-q4j8-4xjp"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/27xxx/CVE-2024-27288.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-27288"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-15T01:49:22.569165038Z"}}