newbee-mall v1.0.0 is vulnerable to Server-Side Request...
High severity
Unreviewed
Published
Oct 28, 2024
to the GitHub Advisory Database
•
Updated Oct 30, 2024
Description
Published by the National Vulnerability Database
Oct 28, 2024
Published to the GitHub Advisory Database
Oct 28, 2024
Last updated
Oct 30, 2024
newbee-mall v1.0.0 is vulnerable to Server-Side Request Forgery (SSRF) via the goodsCoverImg parameter.
References