Vulnerabilities > Uppy > Uppy

DATE CVE VULNERABILITY TITLE RISK
2020-03-20 CVE-2020-8135 Server-Side Request Forgery (SSRF) vulnerability in Uppy 1.9.1/1.9.2
The uppy npm package < 1.9.3 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attacker to scan local or external network or otherwise interact with internal systems.
network
low complexity
uppy CWE-918
7.5