CVE-2022-1592
Severity CVSS v4.0:
Pending analysis
Type:
CWE-918
Server-Side Request Forgery (SSRF)
Publication date:
05/05/2022
Last modified:
12/05/2022
Description
Server-Side Request Forgery in scout in GitHub repository clinical-genomics/scout prior to v4.42. An attacker could make the application perform arbitrary requests to fishing steal cookie, request to private area, or lead to xss...
Impact
Base Score 3.x
8.20
Severity 3.x
HIGH
Base Score 2.0
6.40
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:clinical-genomics:scout:*:*:*:*:*:*:*:* | 4.42 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



