Security Advisory

CVE-2020-8135

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-20 18:26:32
Last updated 2024-08-04 09:48:25
Assigner hackerone
State PUBLISHED

Description

The uppy npm package < 1.9.3 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attacker to scan local or external network or otherwise interact with internal systems.