Description
Plone through 5.2.4 allows remote authenticated managers to conduct SSRF attacks via an event ical URL, to read one line of a file.
Remediation
References
Related Vulnerabilities
Jenkins Server-Side Request Forgery (SSRF) Vulnerability (CVE-2018-1000067)
Grafana Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2022-21673)
WordPress Plugin WP Visitor Statistics (Real Time Traffic) SQL Injection (6.8.1)
phpMyAdmin Other Vulnerability (CVE-2006-5116)
WordPress Plugin Cryptocurrency Widgets For Elementor Security Bypass (1.2.1)