CyberRota Analysis
AI-GeneratedVersions of stigmem prior to 0.9.0a2 are critically vulnerable due to unauthenticated access being permitted when authentication is disabled on non-loopback deployments. This flaw allows attackers to execute read, write, and federation operations with an anonymous identity, posing significant risks if nodes are exposed beyond local development environments. Organizations using stigmem should prioritize immediate updates to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
stigmem versions before 0.9.0a2 allow unauthenticated access when authentication is disabled on non-loopback deployments. Attackers can perform read, write, and federation operations with anonymous identity when nodes are exposed outside local development environments.