Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29552
HistoryMar 03, 2021 - 6:00 a.m.

Authorization Bypass

2021-03-0306:00:07
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
fastify-reply-from
authorization bypass
vulnerability
restricted service
proxied backend service

EPSS

0.003

Percentile

70.7%

fastify-reply-from is vulnerable to authorization bypass. An attacker is able to escape the prefix of the proxied backend service and access restricted service such as the parent of the base URL.

EPSS

0.003

Percentile

70.7%