Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An SSRF vulnerability in Gotenberg through 6.2.1 exists in the remote URL to PDF conversion, which results in a remote attacker being able to read local files or fetch intranet resources.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gotenberg 代码问题漏洞
Vulnerability Description
Thecodingmachine Gotenberg是Victornpb(Thecodingmachine)个人开发者的一个基于Go的可将HTML,Markdown和Office文档转换为PDF的应用。该应用基于Docker的无状态API可用于支持构建Web应用。 Gotenberg 存在安全漏洞,该漏洞源于在Gotenberg的6.2.1版本中,SSRF漏洞存在于远程URL到PDF的转换中。攻击者可利用该漏洞读取本地文件或获取内网资源。
CVSS Information
N/A
Vulnerability Type
N/A