Логотип exploitDog
bind:CVE-2020-7740
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-7740

Количество 2

Количество 2

nvd логотип

CVE-2020-7740

больше 5 лет назад

This affects all versions of package node-pdf-generator. Due to lack of user input validation and sanitization done to the content given to node-pdf-generator, it is possible for an attacker to craft a url that will be passed to an external server allowing an SSRF attack.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-hcq6-h8v2-r5wm

больше 4 лет назад

Server-Side Request Forgery in node-pdf-generator

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-7740

This affects all versions of package node-pdf-generator. Due to lack of user input validation and sanitization done to the content given to node-pdf-generator, it is possible for an attacker to craft a url that will be passed to an external server allowing an SSRF attack.

CVSS3: 8.2
5%
Низкий
больше 5 лет назад
github логотип
GHSA-hcq6-h8v2-r5wm

Server-Side Request Forgery in node-pdf-generator

CVSS3: 8.2
5%
Низкий
больше 4 лет назад

Уязвимостей на страницу