CVE-2024-49587 - Glutton V1 endpoints missing authentication

CVE-2024-49587 - Glutton V1 endpoints missing authentication

CVE ID : CVE-2024-49587 Published : Dec. 19, 2025, 5:15 p.m. | 1 hour, 7 minutes ago Description : Glutton V1 service endpoints were exposed without any authentication on Gotham stacks, this could have allowed users that did not have any permission to hit glutton backend directly and read/update/delete data. The affected service has been patched and automatically deployed to all Apollo-managed Gotham Instances Severity: 9.1 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
CRITICAL
Published
Dec. 19, 2025

Source: Telegram CVE Monitor