ikiwiki before 3.20170111.1 and 3.2018x and 3.2019x before 3.20190228 allows SSRF via the aggregate plugin. The impact also includes reading local files via file: URIs.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-06-05T17:55:37

Updated: 2019-07-17T19:49:41

Reserved: 2019-02-26T00:00:00


Link: CVE-2019-9187

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2019-06-05T18:29:01.183

Modified: 2019-07-17T20:15:11.740


Link: CVE-2019-9187

JSON object: View

cve-icon Redhat Information

No data.

CWE