John Jason Fallows
Friday, March 20, 2020
New vulnerability on the NVD: CVE-2019-11574
An issue was discovered in Simple Machines Forum (SMF) before release 2.0.17. There is SSRF related to Subs-Package.php and Subs.php because user-supplied data is used directly in curl calls.
from Pocket https://ift.tt/3dhhYZN
via
IFTTT
No comments:
Post a Comment
Newer Post
Older Post
Home
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment