CVE | CVE-2022-38398 |
CVE Title | |
Published Date | 2022-09-22T15:15Z |
Modified Date | 2022-09-23T18:55Z |
CWE Type | CWE-918 |
CVSS 3.x | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Description | Server-Side Request Forgery (SSRF) vulnerability in Batik of Apache XML Graphics allows an attacker to load a url thru the jar protocol. This issue affects Apache XML Graphics Batik 1.14. |
References | |
By clicking these links you will leave this website. We do not endorse and will not be held accountable for any activity on external sites. | |
Reference URL | https://lists.apache.org/thread/712c9xwtmyghyokzrm2ml6sps4xlmbsx |
Reference Description | MISC https://lists.apache.org/thread/712c9xwtmyghyokzrm2ml6sps4xlmbsx |
Reference Description | |
Tags | Mailing List Vendor Advisory |
Sources | NIST MITRE |