Description
A Server-Side Request Forgery (SSRF) attack in FUXA 1.1.3 can be carried out leading to the obtaining of sensitive information from the server's internal environment and services, often potentially leading to the attacker executing commands on the server.
Remediation
References
https://www.youtube.com/watch?v=JE1Kcq3iJpc
Related Vulnerabilities
CVE-2022-21222 Vulnerability in maven package org.webjars.npm:css-what
CVE-2023-25762 Vulnerability in maven package org.jenkins-ci.plugins:pipeline-build-step
CVE-2020-8129 Vulnerability in npm package script-manager
CVE-2023-2968 Vulnerability in npm package proxy
CVE-2020-15096 Vulnerability in maven package org.webjars.npm:electron