Beveiligingsadvies

CVE-2025-2691

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-23 14:21:36
Laatst bijgewerkt 2026-08-03 15:25:30
Toegewezen door snyk
CVSS-score 8.8
Status PUBLISHED

Beschrijving

Versions of the package nossrf before 1.0.4 are vulnerable to Server-Side Request Forgery (SSRF) where an attacker can provide a hostname that resolves to a local or reserved IP address space and bypass the SSRF protection mechanism.