Skip to content

Known CVE

D-Tale <= 3.16.0 - Pre-Auth RCE via Pandas Query Injection

D-Tale prior to version 3.16.1 contains a remote code execution caused by the `update-settings` endpoint allowing updates to `enable_custom_filters`, letting attackers run malicious code on the server, exploit requires hosting D-Tale publicly.

CVE-2024-55890

Critical2024CVSS 9.8CWE-95

cve2024 · dtale · rce · oast · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website