漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
URL Restriction Bypass in plantuml/plantuml
Vulnerability Description
URL Restriction Bypass in GitHub repository plantuml/plantuml prior to V1.2022.5. An attacker can abuse this to bypass URL restrictions that are imposed by the different security profiles and achieve server side request forgery (SSRF). This allows accessing restricted internal resources/servers or sending requests to third party servers.
CVSS Information
N/A
Vulnerability Type
服务端请求伪造(SSRF)
Vulnerability Title
PlantUML 代码问题漏洞
Vulnerability Description
PlantUML是一个允许快速编写的组件。用于从文本描述生成图表。 PlantUML 1.2022.5之前版本存在安全漏洞,攻击者利用该漏洞可绕过URL限制并实现服务器端请求伪造 (SSRF)。
CVSS Information
N/A
Vulnerability Type
N/A