CVE-2022-1592

Severity CVSS v4.0:
Pending analysis
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
05/05/2022
Last modified:
12/05/2022

Description

Server-Side Request Forgery in scout in GitHub repository clinical-genomics/scout prior to v4.42. An attacker could make the application perform arbitrary requests to fishing steal cookie, request to private area, or lead to xss...

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:clinical-genomics:scout:*:*:*:*:*:*:*:* 4.42 (excluding)