Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
URL Restriction Bypass in plantuml/plantuml
Vulnerability Description
URL Restriction Bypass in GitHub repository plantuml/plantuml prior to V1.2022.5. An attacker can abuse this to bypass URL restrictions that are imposed by the different security profiles and achieve server side request forgery (SSRF). This allows accessing restricted internal resources/servers or sending requests to third party servers.
CVSS Information
N/A
Vulnerability Type
服务端请求伪造(SSRF)
Vulnerability Title
PlantUML 代码问题漏洞
Vulnerability Description
PlantUML是一个允许快速编写的组件。用于从文本描述生成图表。 PlantUML 1.2022.5之前版本存在安全漏洞,攻击者利用该漏洞可绕过URL限制并实现服务器端请求伪造 (SSRF)。
CVSS Information
N/A
Vulnerability Type
N/A