The bugs can allow arbitrary path-write access and uploading of an arbitrary configset
CVE-2024-53677 can lead to remote code execution