Back to Database
Status published
High
CVE-2024-6227
Infinite Loop in aimhubio/aim
Vulnerability Description
A vulnerability in aimhubio/aim version 3.19.3 allows an attacker to cause an infinite loop by configuring the remote tracking server to point at itself. This results in the server endlessly connecting to itself, rendering it unable to respond to other connections.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-6227
Credits & Attribution
No credits recorded in the NVD database.
More from aimhubio
View All →CVE-2025-5321
aimhubio aim run_view Object query.py RestrictedPythonQuery privilege escalation
Medium
5.3
CVE-2025-0190
Denial of Service in aimhubio/aim
High
7.5
CVE-2025-0189
Denial of Service in aimhubio/aim
High
7.5
CVE-2024-8863
aimhubio aim Text Explorer textbox.tsx dangerouslySetInnerHTML cross site scripting
Medium
5.3
CVE-2024-8769
Arbitrary File Deletion via Relative Path Traversal in aimhubio/aim
Critical
9.1
Affected Vendor
aimhubio
View all reports →Affected Software
aimhubio/aim
Vulnerable Versions:
unspecified
Timeline
Official Publish:
July 8th, 2024
Last Modified:
August 30th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H