WhisperX tag archive

#CVE-2025-24010

This page collects WhisperX intelligence signals tagged #CVE-2025-24010. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (4)

The Lab · 2026-04-03 22:26:54 · GitHub Issues

1. Vite Development Server Exposed: CVE-2025-24010 Allows Cross-Origin Attacks

A critical security flaw in the Vite development server, tracked as CVE-2025-24010, exposes projects to cross-origin attacks. The vulnerability stems from default CORS settings and a lack of validation on the Origin header for WebSocket connections. This combination allows any malicious website to send requests to a de...

The Lab · 2026-04-06 22:27:10 · GitHub Issues

2. Vite v6 Security Update Patches Critical Dev Server Vulnerability (CVE-2025-24010)

A critical security vulnerability in Vite, the popular frontend build tool, has been patched in the newly released version 6. The flaw, tracked as CVE-2025-24010, allowed any website to send arbitrary requests to a developer's local Vite development server and read the responses. This represents a significant security ...

The Lab · 2026-04-07 14:27:21 · GitHub Issues

3. Vite v6 Security Update Patches Critical CORS & WebSocket Vulnerability (CVE-2025-24010)

A critical security vulnerability in the Vite development server has prompted a mandatory major version update. The flaw, tracked as CVE-2025-24010, stemmed from default CORS settings and a lack of validation on the Origin header for WebSocket connections. This configuration allowed any website to send requests to a Vi...

The Lab · 2026-04-30 02:54:07 · GitHub Issues

4. CVE-2025-24010: Vite Development Servers Vulnerable to Cross-Origin Request Interception

A critical vulnerability in Vite, the widely-used frontend build tool, has been identified and patched. The security flaw, tracked as CVE-2025-24010 and catalogued as GHSA-vg6x-rcgg-rjx6, allowed malicious websites to send arbitrary requests to Vite development servers and read the responses. This vulnerability represe...