Server-Side Request Forgery (SSRF), Improper Control of...
Critical severity
Unreviewed
Published
Nov 18, 2024
to the GitHub Advisory Database
•
Updated Nov 19, 2024
Description
Published by the National Vulnerability Database
Nov 18, 2024
Published to the GitHub Advisory Database
Nov 18, 2024
Last updated
Nov 19, 2024
Server-Side Request Forgery (SSRF), Improper Control of Generation of Code ('Code Injection') vulnerability in Apache OFBiz.
This issue affects Apache OFBiz: before 18.12.17.
Users are recommended to upgrade to version 18.12.17, which fixes the issue.
References