CVE-2024-8955

Severity CVSS v4.0:
Pending analysis
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
20/03/2025
Last modified:
15/10/2025

Description

A Server-Side Request Forgery (SSRF) vulnerability exists in composiohq/composio version v0.4.4. This vulnerability allows an attacker to read the contents of any file in the system by exploiting the BROWSERTOOL_GOTO_PAGE and BROWSERTOOL_GET_PAGE_DETAILS actions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:composio:composio:0.4.4:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools