ZeroHour

CVE-2024-0403

PoC
CVSS 3.1
6.5 medium
EPSS
<1%p37
Published
()
Modified
Description

Recipes version 1.5.10 allows arbitrary HTTP requests to be made through the server. This is possible because the application is vulnerable to SSRF.

Vendors
tandoor
Products
recipes
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.