Description
Paranoidhttp before 0.3.0 allows SSRF because [::] is equivalent to the 127.0.0.1 address, but does not match the filter for private addresses.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0556 | Paranoidhttp before 0.3.0 allows SSRF because [::] is equivalent to the 127.0.0.1 address, but does not match the filter for private addresses. |
Github GHSA |
GHSA-v9mp-j8g7-2q6m | Paranoidhttp Server-Side Request Forgery vulnerability |
References
History
Fri, 28 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-28T14:26:27.278Z
Reserved: 2023-01-30T00:00:00.000Z
Link: CVE-2023-24623
Updated: 2024-08-02T11:03:18.944Z
Status : Modified
Published: 2023-01-30T05:15:10.373
Modified: 2025-03-28T15:15:43.963
Link: CVE-2023-24623
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA