cvelist/2023/31xxx/CVE-2023-31456.json

67 lines
2.0 KiB
JSON
Raw Normal View History

2023-04-28 18:00:36 +00:00
{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
2024-07-16 18:00:33 +00:00
"ID": "CVE-2023-31456",
"STATE": "PUBLIC"
2023-04-28 18:00:36 +00:00
},
2024-07-16 18:00:33 +00:00
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
2023-04-28 18:00:36 +00:00
"description": {
"description_data": [
{
"lang": "eng",
2024-07-16 18:00:33 +00:00
"value": "There is an SSRF vulnerability in the Fluid Topics platform that affects versions prior to 4.3, where the server can be forced to make arbitrary requests to internal and external resources by an authenticated user."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://antidot.net/blog/",
"refsource": "MISC",
"name": "https://antidot.net/blog/"
},
{
"refsource": "CONFIRM",
"name": "https://doc.fluidtopics.com/r/Fluid-Topics-Release-Notes/June-10th-2024",
"url": "https://doc.fluidtopics.com/r/Fluid-Topics-Release-Notes/June-10th-2024"
2023-04-28 18:00:36 +00:00
}
]
}
}