CVE-2026-24124 | dragonflyoss dragonfly up to 2.4.0 Job API Endpoint /api/v1/jobs missing authentication (GHSA-j8hf-cp34-g4j7 / EUVD-2026-3805)
A vulnerability categorized as critical has been discovered in dragonflyoss dragonfly up to 2.4.0. Impacted is an unknown function of the file /api/v1/jobs of the component Job API Endpoint. Executing a manipulation can lead to missing authentication.
This vulnerability is registered as CVE-2026-24124. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.