XXL-Job before v2.3.1 contains a Server-Side Request Forgery (SSRF) via the component /admin/controller/JobLogController.java.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-83w4-x5w9-hf4h | XXL-JOB vulnerable to Server-Side Request Forgery (SSRF) |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/xuxueli/xxl-job/issues/3002 |
|
History
Tue, 29 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-29T15:07:31.102Z
Reserved: 2022-10-17T00:00:00.000Z
Link: CVE-2022-43183
Updated: 2024-08-03T13:26:02.869Z
Status : Modified
Published: 2022-11-17T21:15:15.837
Modified: 2025-04-29T16:15:26.473
Link: CVE-2022-43183
No data.
OpenCVE Enrichment
No data.
Github GHSA