Description
Kity Minder v1.3.5 was discovered to contain a Server-Side Request Forgery (SSRF) via the init function at ImageCapture.class.php.
Remediation
References
https://github.com/fex-team/kityminder/issues/345
Related Vulnerabilities
CVE-2021-46440 Vulnerability in npm package strapi
CVE-2020-12648 Vulnerability in maven package org.webjars.npm:tinymce
CVE-2023-32262 Vulnerability in maven package org.jenkins-ci.plugins:dimensionsscm
CVE-2020-28442 Vulnerability in maven package org.webjars.npm:js-data
CVE-2020-17519 Vulnerability in maven package org.apache.flink:flink-runtime_2.11