Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2024-29415 | 2024-11-21 | N/A | 8.1 HIGH | ||
The ip package through 2.0.1 for Node.js might allow SSRF because some IP addresses (such as 127.1, 01200034567, 012.1.2.3, 000:0:0000::01, and ::fFFf:127.0.0.1) are improperly categorized as globally routable via isPublic. NOTE: this issue exists because of an incomplete fix for CVE-2023-42282. | |||||
CVE-2022-4847 | 1 Usememos | 1 Memos | 2024-11-21 | N/A | 6.5 MEDIUM |
Incorrectly Specified Destination in a Communication Channel in GitHub repository usememos/memos prior to 0.9.1. |