CVE-2020-8135

Publication date

2020-03-20 18:26:32

Family

hackerone

State

PUBLISHED

Description

The uppy npm package < 1.9.3 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attacker to scan local or external network or otherwise interact with internal systems.