{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-25T07:41:41.761","vulnerabilities":[{"cve":{"id":"CVE-2024-10110","sourceIdentifier":"security@huntr.dev","published":"2025-03-20T10:15:14.867","lastModified":"2025-07-23T20:56:54.907","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"In version 3.23.0 of aimhubio/aim, the ScheduledStatusReporter object can be instantiated to run on the main thread of the tracking server, leading to the main thread being blocked indefinitely. This results in a denial of service as the tracking server becomes unable to respond to other requests."},{"lang":"es","value":"En la versión 3.23.0 de aimhubio/aim, el objeto ScheduledStatusReporter puede instanciarse para ejecutarse en el hilo principal del servidor de seguimiento, lo que provoca el bloqueo indefinido de dicho hilo. Esto provoca una denegación de servicio, ya que el servidor de seguimiento no puede responder a otras solicitudes."}],"metrics":{"cvssMetricV30":[{"source":"security@huntr.dev","type":"Secondary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6}]},"weaknesses":[{"source":"security@huntr.dev","type":"Secondary","description":[{"lang":"en","value":"CWE-400"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aimstack:aim:3.23.0:*:*:*:*:python:*:*","matchCriteriaId":"22E84A5D-7E10-4D1A-98EF-8A79AAAF82D4"}]}]}],"references":[{"url":"https://huntr.com/bounties/5ea6cf56-7b4c-4dce-9b6c-3e910fbb1ae4","source":"security@huntr.dev","tags":["Exploit","Third Party Advisory"]}]}}]}