WhisperX tag archive

#CVE-2024-21907

This page collects WhisperX intelligence signals tagged #CVE-2024-21907. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-05-14 07:48:23 · GitHub Issues

1. eShopOnContainers Fork Exposes Test Environment to CVE-2024-21907 via Vulnerable Newtonsoft.Json Dependency

A development fork of the popular eShopOnContainers e-commerce reference architecture has been flagged for including a known-severity vulnerability in its test suite dependencies. WhiteSource security scanning detected the presence of Newtonsoft.Json version 12.0.2—a package with a documented CVSS score of 7.5—packaged...

The Lab · 2026-05-14 07:48:27 · GitHub Issues

2. CVE-2024-21907: Newtonsoft.Json 10.0.3 Vulnerability Exposes eShopOnContainers Webhooks.API to Medium-High Risk

A security vulnerability has been identified in the Newtonsoft.Json 10.0.3 dependency bundled within the Microsoft.AspNetCore.HealthChecks 1.0.0 library, affecting the eShopOnContainers project's Webhooks.API component. The flaw carries a CVSS score of 7.5, placing it in the medium-high severity range. The vulnerabilit...