CVE-2022-43140

CVE-2022-43140

kkFileView v4.1.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component cn.keking.web.controller.OnlinePreviewController#getCorsFile. This vulnerability allows attackers to force the application to make arbitrary requests via injection of crafted URLs into the url parameter.

Source: CVE-2022-43140

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다