Filtered by vendor Ssrf-agent Project
Subscribe
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2021-23718 | 1 Ssrf-agent Project | 1 Ssrf-agent | 2021-12-15 | 5.0 MEDIUM | 7.5 HIGH |
The package ssrf-agent before 1.0.5 are vulnerable to Server-side Request Forgery (SSRF) via the defaultIpChecker function. It fails to properly validate if the IP requested is private. |