Lucene search

K

Symbolicator Security Vulnerabilities

cve
cve

CVE-2023-49094

Symbolicator is a symbolication service for native stacktraces and minidumps with symbol server support. An attacker could make Symbolicator send arbitrary GET HTTP requests to internal IP addresses by using a specially crafted HTTP endpoint. The response could be reflected to the attacker if they ...

4.3CVSS

4.7AI Score

0.001EPSS

2023-11-30 05:15 AM
9
cve
cve

CVE-2023-51451

Symbolicator is a service used in Sentry. Starting in Symbolicator version 0.3.3 and prior to version 21.12.1, an attacker could make Symbolicator send GET HTTP requests to arbitrary URLs with internal IP addresses by using an invalid protocol. The responses of those requests could be exposed via S...

4.3CVSS

4.7AI Score

0.001EPSS

2023-12-22 09:15 PM
20