Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f2rj-m42r-6jm2

Опубликовано: 25 окт. 2022
Источник: github
Github: Прошло ревью
CVSS3: 9.8

Описание

Skipper vulnerable to SSRF via X-Skipper-Proxy

Impact

Skipper prior to version v0.13.236 is vulnerable to server-side request forgery (SSRF). An attacker can exploit a vulnerable version of proxy to access the internal metadata server or other unauthenticated URLs by adding an specific header (X-Skipper-Proxy) to the http request.

Patches

The problem was patched in version https://github.com/zalando/skipper/releases/tag/v0.13.237. Users need to upgrade to skipper >=v0.13.237.

Workarounds

Use dropRequestHeader("X-Skipper-Proxy") filter

References

https://github.com/zalando/skipper/releases/tag/v0.13.237

For more information

If you have any questions or comments about this advisory:

Пакеты

Наименование

github.com/zalando/skipper

go
Затронутые версииВерсия исправления

< 0.13.237

0.13.237

EPSS

Процентиль: 98%
0.47011
Средний

9.8 Critical

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 9.8
nvd
больше 3 лет назад

Zalando Skipper v0.13.236 is vulnerable to Server-Side Request Forgery (SSRF).

EPSS

Процентиль: 98%
0.47011
Средний

9.8 Critical

CVSS3

Дефекты

CWE-918