CVE-2025-24369 - Anubis Bot Protection Weakness

CVE ID : CVE-2025-24369 Published : Jan. 27, 2025, 11:15 p.m. | 59 minutes ago Description : Anubis is a tool that allows administrators to protect bots against AI scrapers through bot-checking heuristics and a proof-of-work challenge to discourage scraping from multiple IP addresses. Anubis allows attackers to bypass the bot protection by requesting a challenge, formulates any nonce (such as 42069), and then passes the challenge with difficulty zero. Commit e09d0226a628f04b1d80fd83bee777894a45cd02 fixes this behavior by not using a client-specified difficulty value. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Jan 28, 2025 - 01:15
 0  0
CVE-2025-24369 - Anubis Bot Protection Weakness
CVE ID : CVE-2025-24369
Published : Jan. 27, 2025, 11:15 p.m. | 59 minutes ago
Description : Anubis is a tool that allows administrators to protect bots against AI scrapers through bot-checking heuristics and a proof-of-work challenge to discourage scraping from multiple IP addresses. Anubis allows attackers to bypass the bot protection by requesting a challenge, formulates any nonce (such as 42069), and then passes the challenge with difficulty zero. Commit e09d0226a628f04b1d80fd83bee777894a45cd02 fixes this behavior by not using a client-specified difficulty value.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...