Security Advisory

CVE-2018-3774

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-08-12 22:00:00
Last updated 2024-08-05 04:50:30
Assigner hackerone
State PUBLISHED

Description

Incorrect parsing in url-parse <1.4.3 returns wrong hostname which leads to multiple vulnerabilities such as SSRF, Open Redirect, Bypass Authentication Protocol.