CVE-2024-48590

Publication date

2025-03-20 00:00:00

Family

mitre

State

PUBLISHED

Description

Inflectra SpiraTeam 7.2.00 is vulnerable to Server-Side Request Forgery (SSRF) via the NewsReaderService. This allows an attacker to escalate privileges and obtain sensitive information.