ID | CVE-2025-44594 | ||||||
Sažetak | halo v2.20.17 and before is vulnerable to server-side request forgery (SSRF) in /apis/uc.api.storage.halo.run/v1alpha1/attachments/-/upload-from-url. | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N | ||||||
Zadnje važnije ažuriranje | 11-09-2025 - 17:14 | ||||||
Objavljeno | 09-09-2025 - 20:15 |