Количество 6
Количество 6

CVE-2023-28155
** UNSUPPORTED WHEN ASSIGNED ** The Request package through 2.88.1 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server that does a cross-protocol redirect (HTTP to HTTPS, or HTTPS to HTTP). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

CVE-2023-28155
The Request package through 2.88.1 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server that does a cross-protocol redirect (HTTP to HTTPS, or HTTPS to HTTP). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

CVE-2023-28155
CVE-2023-28155
The Request package through 2.88.1 for Node.js allows a bypass of SSRF ...
GHSA-p8p7-x288-28g6
Server-Side Request Forgery in Request

BDU:2023-05169
Уязвимость пакета Request программной платформы Node.js, позволяющая нарушителю осуществить SSRF-атаку
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-28155 ** UNSUPPORTED WHEN ASSIGNED ** The Request package through 2.88.1 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server that does a cross-protocol redirect (HTTP to HTTPS, or HTTPS to HTTP). NOTE: This vulnerability only affects products that are no longer supported by the maintainer. | CVSS3: 6.1 | 1% Низкий | больше 2 лет назад |
![]() | CVE-2023-28155 The Request package through 2.88.1 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server that does a cross-protocol redirect (HTTP to HTTPS, or HTTPS to HTTP). NOTE: This vulnerability only affects products that are no longer supported by the maintainer. | CVSS3: 6.1 | 1% Низкий | больше 2 лет назад |
![]() | CVSS3: 6.1 | 1% Низкий | больше 2 лет назад | |
CVE-2023-28155 The Request package through 2.88.1 for Node.js allows a bypass of SSRF ... | CVSS3: 6.1 | 1% Низкий | больше 2 лет назад | |
GHSA-p8p7-x288-28g6 Server-Side Request Forgery in Request | CVSS3: 6.1 | 1% Низкий | больше 2 лет назад | |
![]() | BDU:2023-05169 Уязвимость пакета Request программной платформы Node.js, позволяющая нарушителю осуществить SSRF-атаку | CVSS3: 6.1 | 1% Низкий | больше 2 лет назад |
Уязвимостей на страницу