Description
XXL-Job before v2.3.1 contains a Server-Side Request Forgery (SSRF) via the component /admin/controller/JobLogController.java.
Remediation
References
https://github.com/xuxueli/xxl-job/issues/3002
Related Vulnerabilities
CVE-2023-43497 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2020-12265 Vulnerability in npm package decompress
CVE-2020-21125 Vulnerability in maven package com.bstek.ureport:ureport2-console
CVE-2020-16040 Vulnerability in npm package electron
CVE-2020-7746 Vulnerability in maven package org.webjars.npm:chart.js