• caglararli@hotmail.com
  • 05386281520

CVE-2024-22203 | benbusby whoogle-search up to 0.8.3 GET Request app/routes.py element src_type/element_url server-side request forgery (GHSL-2023-186)

Çağlar Arlı      -    12 Views

CVE-2024-22203 | benbusby whoogle-search up to 0.8.3 GET Request app/routes.py element src_type/element_url server-side request forgery (GHSL-2023-186)

A vulnerability has been found in benbusby whoogle-search up to 0.8.3 and classified as critical. Affected by this vulnerability is the function element of the file app/routes.py of the component GET Request Handler. The manipulation of the argument src_type/element_url leads to server-side request forgery. This vulnerability is known as CVE-2024-22203. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.