NVD Vulnerability Detail
Search Exploit, PoC
CVE-2024-42351
Summary

Galaxy is a free, open-source system for analyzing data, authoring workflows, training and education, publishing tools, managing infrastructure, and more. An attacker can potentially replace the contents of public datasets resulting in data loss or tampering. All supported branches of Galaxy (and more back to release_21.05) were amended with the below patch. Users are advised to upgrade. There are no known workarounds for this vulnerability.

Publication Date Sept. 21, 2024, 4:15 a.m.
Registration Date Sept. 21, 2024, noon
Last Update Sept. 26, 2024, 10:32 p.m.
Related information, measures and tools
Common Vulnerabilities List

JVN Vulnerability Information
Galaxy Project の Galaxy における脆弱性
Title Galaxy Project の Galaxy における脆弱性
Summary

Galaxy Project の Galaxy には、不特定の脆弱性が存在します。

Possible impacts 情報を取得される、および情報を改ざんされる可能性があります。
Solution

ベンダアドバイザリまたはパッチ情報が公開されています。参考情報を参照して適切な対策を実施してください。

Publication Date Sept. 20, 2024, midnight
Registration Date Aug. 21, 2025, 5:06 p.m.
Last Update Aug. 21, 2025, 5:06 p.m.
Affected System
Galaxy Project
Galaxy 21.05 未満
CVE (情報セキュリティ 共通脆弱性識別子)
CWE (共通脆弱性タイプ一覧)
その他
Change Log
No Changed Details Date of change
1 [2025年08月21日]
  掲載
Aug. 21, 2025, 5:06 p.m.