GHSA-fmj2-7wx8-qj4v
HIGHCVE-2020-11988Apache XmlGraphics Commons 2.4 is vulnerable to server-side request forgery, caused by improper input validation by the XMPParser. By using a specially-crafted argument, an attacker could exploit this vulnerability to cause the underlying server to make arbitrary GET requests.
- Affected
- < 2.6
- Fixed in
- 2.6
- Weakness
- CWE-20
- Published
- 2022-02-09
- Source
- github
GHSANVDMITREreferencereferencereferencereferencereferencereferencereferencereferencereference