logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-43984

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-43984

Description:
Browsershot version 3.57.3 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate that the JS content imported from an external source passed to the Browsershot::html method does not contain URLs that use the file:// protocol.
Last updated date:
01/10/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
11/29/2022
Reference url to background

https://fluidattacks.com/advisories/malone/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy