Vulnerabilities > CVE-2022-1592 - Server-Side Request Forgery (SSRF) vulnerability in Clinical-Genomics Scout
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
LOW Availability impact
NONE Summary
Server-Side Request Forgery in scout in GitHub repository clinical-genomics/scout prior to v4.42. An attacker could make the application perform arbitrary requests to fishing steal cookie, request to private area, or lead to xss...
Vulnerable Configurations
Common Weakness Enumeration (CWE)
References
- https://github.com/clinical-genomics/scout/commit/b0ef15f4737d0c801154c1991b52ff5cab4f5c83
- https://github.com/clinical-genomics/scout/commit/b0ef15f4737d0c801154c1991b52ff5cab4f5c83
- https://huntr.dev/bounties/352b39da-0f2e-415a-9793-5480cae8bd27
- https://huntr.dev/bounties/352b39da-0f2e-415a-9793-5480cae8bd27