CVE-2024-11137 | lunary-ai lunary up to 1.6.0 /v1/runs/ runId_score ID access control
A vulnerability was found in lunary-ai lunary up to 1.6.0. It has been declared as critical. This vulnerability affects the function runId_score of the file /v1/runs/. The manipulation of the argument ID leads to improper access controls.
This vulnerability was named CVE-2024-11137. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.