Welcome to my blog! About: About Last Posts: Another vision for SSRF SSRF Geoserver (CVE-2021-40822) Object Injection to SQL Injection Bug bounty profiles: Hackerone Bugcrowd
GeoServer up to and including 2.18.5 and 2.19.x up to and including 2.19.2 allows SSRF via the option for setting a proxy host.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
osgeo geoserver |