Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2024-45843

почти 2 года назад

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

CVSS3: 3.1
EPSS: Низкий
debian логотип

CVE-2024-45843

почти 2 года назад

Mattermost versions 9.5.x <= 9.5.8 fail to include themetadata endpoin ...

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-w37h-c34c-gwjm

почти 2 года назад

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

CVSS3: 3.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-45843

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

CVSS3: 3.1
0%
Низкий
почти 2 года назад
debian логотип
CVE-2024-45843

Mattermost versions 9.5.x <= 9.5.8 fail to include themetadata endpoin ...

CVSS3: 3.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-w37h-c34c-gwjm

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

CVSS3: 3.1
0%
Низкий
почти 2 года назад

Уязвимостей на страницу