CVE-2020-28168
06.11.2020, 20:15
Axios NPM package 0.21.0 contains a Server-Side Request Forgery (SSRF) vulnerability where an attacker is able to bypass a proxy by providing a URL that responds with a redirect to a restricted host or IP address.
Vendor | Product | Version |
---|---|---|
axios | axios | 0.19.0 ≤ 𝑥 ≤ 0.21.0 |
siemens | sinec_ins | 𝑥 < 1.0 |
siemens | sinec_ins | 1.0:sp1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References