ZeroHour

CVE-2022-41401

PoC
CVSS 3.1
6.5 medium
EPSS
1%p71
Published
()
Modified
Description

OpenRefine <= v3.5.2 contains a Server-Side Request Forgery (SSRF) vulnerability, which permits unauthorized users to exploit the system, potentially leading to unauthorized access to internal resources and sensitive file disclosure.

Vendors
openrefine
Products
openrefine
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.