Lucene search

K
osvGoogleOSV:GHSA-MCG9-64CP-XWP7
HistoryJul 05, 2019 - 9:08 p.m.

Server-Side Request Forgery in Hawt Hawtio

2019-07-0521:08:09
Google
osv.dev
15

0.033 Low

EPSS

Percentile

91.3%

Hawt Hawtio through 2.5.0 is vulnerable to SSRF, allowing a remote attacker to trigger an HTTP request from an affected server to an arbitrary host via the initial /proxy/ substring of a URI.

0.033 Low

EPSS

Percentile

91.3%