Beveiligingsadvies

CVE-2025-50180

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-02-25 15:32:56
Laatst bijgewerkt 2026-02-27 18:22:28
Toegewezen door GitHub_M
CVSS-score 8.7
Status PUBLISHED

Beschrijving

esm.sh is a no-build content delivery network (CDN) for web development. In version 136, esm.sh is vulnerable to a full-response SSRF, allowing an attacker to retrieve information from internal websites through the vulnerability. Version 137 fixes the vulnerability.