Description
Kity Minder v1.3.5 was discovered to contain a Server-Side Request Forgery (SSRF) via the init function at ImageCapture.class.php.
Remediation
References
https://github.com/fex-team/kityminder/issues/345
Related Vulnerabilities
CVE-2020-7636 Vulnerability in npm package adb-driver
CVE-2023-45282 Vulnerability in npm package openmct
CVE-2018-1002202 Vulnerability in maven package net.lingala.zip4j:zip4j
CVE-2020-12265 Vulnerability in npm package decompress
CVE-2020-12648 Vulnerability in maven package org.webjars.npm:tinymce