Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
forem up to v2022.11.11 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /articles/{id}. This vulnerability allows attackers to access network resources and sensitive information via a crafted POST request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
forem 代码问题漏洞
Vulnerability Description
Forem forem是Forem公司的一个构建在线社区/论坛的Ruby开源项目。 forem v2022.11.11版本及之前版本存在安全漏洞,该漏洞源于通过组件/articles/{id}发现包含服务器端请求伪造 (SSRF)漏洞。攻击者利用该漏洞通过特制的POST请求访问网络资源和敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A