Description
An unintended require and server-side request forgery vulnerabilities in jsreport version 2.5.0 and earlier allow attackers to execute arbitrary code.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-0767 | An unintended require and server-side request forgery vulnerabilities in jsreport version 2.5.0 and earlier allow attackers to execute arbitrary code. |
Github GHSA |
GHSA-5fjj-cfh2-ghc5 | Server-Side Request Forgery and Inclusion of Functionality from Untrusted Control Sphere in jsreport |
References
| Link | Providers |
|---|---|
| https://hackerone.com/reports/660565 |
|
History
No history.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-04T09:48:25.647Z
Reserved: 2020-01-28T00:00:00.000Z
Link: CVE-2020-8128
No data.
Status : Modified
Published: 2020-02-14T22:15:10.847
Modified: 2024-11-21T05:38:20.913
Link: CVE-2020-8128
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA