Логотип exploitDog
bind:CVE-2024-39954
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-39954

Количество 2

Количество 2

nvd логотип

CVE-2024-39954

6 месяцев назад

CWE-918 Server-Side Request Forgery (SSRF) in eventmesh-runtime module in WebhookUtil.java on windows\linux\mac os e.g. allows the attacker can abuse functionality on the server to read or update internal resources. Users are recommended to upgrade to version 1.12.0 or use the master branch , which fixes this issue.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-hf86-8x8v-h7vc

6 месяцев назад

Apache EventMesh Vulnerable to Server-Side Request Forgery in WebhookUtil.java

CVSS3: 6.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-39954

CWE-918 Server-Side Request Forgery (SSRF) in eventmesh-runtime module in WebhookUtil.java on windows\linux\mac os e.g. allows the attacker can abuse functionality on the server to read or update internal resources. Users are recommended to upgrade to version 1.12.0 or use the master branch , which fixes this issue.

CVSS3: 6.3
0%
Низкий
6 месяцев назад
github логотип
GHSA-hf86-8x8v-h7vc

Apache EventMesh Vulnerable to Server-Side Request Forgery in WebhookUtil.java

CVSS3: 6.3
0%
Низкий
6 месяцев назад

Уязвимостей на страницу