VendorsYeti Platformyetiany version
Vulnerabilities

Yeti Platform YETI (Your Everyday Threat Intelligence) any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2024-45412
Yeti affected by a Potential Denial of Service due to the One Milion Unicode characters attack
Published 2024-09-10 · Modified
7.5EPSS 0.008
CVE-2024-46508
yeti-platform yeti before 2.1.12 allows attackers to generate valid JWT tokens is the secret is not changed (by setting YETI_AUTH_SECRET_KEY to a value other than SECRET).
Published 2026-05-08 · Analyzed
7.5EPSS 0.004
CVE-2024-46507
A SSTI (server side template injection) vulnerability in the custom template export function in yeti-platform yeti before 2.1.12 allows attackers to execute code on the application server.
Published 2026-05-08 · Analyzed
7.3EPSS 0.039