CVE-2024-24821 | Composer InstalledVersions.php inclusion of functionality from untrusted control sphere (Nessus ID 241064)
A vulnerability was found in Composer. It has been rated as critical. This issue affects some unknown processing of the file InstalledVersions.php. The manipulation leads to inclusion of functionality from untrusted control sphere.
The identification of this vulnerability is CVE-2024-24821. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.