Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

【安全漏洞】NPM IP package vulnerable to Server-Side Request Forgery (SSRF) attacks #1294

Open
xiaweiss opened this issue Feb 20, 2024 · 3 comments

Comments

@xiaweiss
Copy link

[email protected] => [email protected] => [email protected]

image
@xiaweiss
Copy link
Author

see pr: #1292

@xiaweiss xiaweiss changed the title NPM IP package vulnerable to Server-Side Request Forgery (SSRF) attacks 【安全漏洞】NPM IP package vulnerable to Server-Side Request Forgery (SSRF) attacks Feb 20, 2024
@taltal78
Copy link

taltal78 commented Jun 3, 2024

Hi ,
I see the PR #1292 got closed... will this be handled ?

@I072744
Copy link

I072744 commented Jun 4, 2024

This vulnerability still exists... how would this be handled ?
urllib latest version is available which is free from vulnerability
Thanks

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants