Description
Incorrect parsing in url-parse <1.4.3 returns wrong hostname which leads to multiple vulnerabilities such as SSRF, Open Redirect, Bypass Authentication Protocol.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-0418 | Incorrect parsing in url-parse <1.4.3 returns wrong hostname which leads to multiple vulnerabilities such as SSRF, Open Redirect, Bypass Authentication Protocol. |
Github GHSA |
GHSA-pv4c-p2j5-38j4 | Open Redirect in url-parse |
Ubuntu USN |
USN-5973-1 | url-parse vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-05T04:50:30.463Z
Reserved: 2017-12-28T00:00:00.000Z
Link: CVE-2018-3774
No data.
Status : Modified
Published: 2018-08-12T22:29:00.220
Modified: 2024-11-21T04:06:03.090
Link: CVE-2018-3774
OpenCVE Enrichment
No data.
EUVD
Github GHSA
Ubuntu USN