Vulnerabilities/

uppy's companion module is vulnerable to Server-Side Request Forgery (SSRF)

Severity:
High

Description

uppy’s companion module is vulnerable to Server-Side Request Forgery (SSRF) via IPv4-mapped IPv6 addresses.

Recommendation

Update the uppy package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
uppy
Anything's wrong? Let us know Last updated on February 03, 2023

This issue is available in SmartScanner Professional

See Pricing