Описание
NocoDB information disclosure vulnerability
In NocoDB prior to 0.91.7, the SMTP plugin doesn't have verification or validation. This allows attackers to make requests to internal servers and read the contents.
Пакеты
Наименование
nocodb
npm
Затронутые версииВерсия исправления
< 0.91.7
0.91.7
Связанные уязвимости
CVSS3: 7.5
nvd
больше 3 лет назад
Generation of Error Message Containing Sensitive Information in GitHub repository nocodb/nocodb prior to 0.91.7+.