Логотип exploitDog
bind:CVE-2024-28607
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-28607

Количество 2

Количество 2

nvd логотип

CVE-2024-28607

11 месяцев назад

The ip-utils package through 2.4.0 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperly categorized as globally routable via a falsy isPrivate return value.

CVSS3: 2.9
EPSS: Низкий
github логотип

GHSA-62ww-4cxc-jj93

11 месяцев назад

The ip-utils package through 2.4.0 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperly categorized as globally routable via a falsy isPrivate return value.

CVSS3: 2.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-28607

The ip-utils package through 2.4.0 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperly categorized as globally routable via a falsy isPrivate return value.

CVSS3: 2.9
0%
Низкий
11 месяцев назад
github логотип
GHSA-62ww-4cxc-jj93

The ip-utils package through 2.4.0 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperly categorized as globally routable via a falsy isPrivate return value.

CVSS3: 2.9
0%
Низкий
11 месяцев назад

Уязвимостей на страницу