Server-Side Request Forgery (SSRF) in GitHub repository plantuml/plantuml prior to 1.2023.9.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/plantuml/plantuml/commit/b32500bb61ae617bb312496d6d832e4be8190797 | Patch | 
| https://huntr.dev/bounties/8ac3316f-431c-468d-87e4-3dafff2ecf51 | Exploit Patch Third Party Advisory | 
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FV7XL3CY3K3K5ER3ASMEQA546MIQQ7QM/ | Mailing List Third Party Advisory | 
| https://github.com/plantuml/plantuml/commit/b32500bb61ae617bb312496d6d832e4be8190797 | Patch | 
| https://huntr.dev/bounties/8ac3316f-431c-468d-87e4-3dafff2ecf51 | Exploit Patch Third Party Advisory | 
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FV7XL3CY3K3K5ER3ASMEQA546MIQQ7QM/ | Mailing List Third Party Advisory | 
Configurations
                    History
                    21 Nov 2024, 08:17
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/plantuml/plantuml/commit/b32500bb61ae617bb312496d6d832e4be8190797 - Patch | |
| References | () https://huntr.dev/bounties/8ac3316f-431c-468d-87e4-3dafff2ecf51 - Exploit, Patch, Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FV7XL3CY3K3K5ER3ASMEQA546MIQQ7QM/ - Mailing List, Third Party Advisory | 
01 Feb 2024, 01:23
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* | |
| References | 
 | 
03 Jul 2023, 19:24
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2023-06-27 15:15
Updated : 2024-11-21 08:17
NVD link : CVE-2023-3432
Mitre link : CVE-2023-3432
CVE.ORG link : CVE-2023-3432
JSON object : View
Products Affected
                fedoraproject
- fedora
plantuml
- plantuml
CWE
                
                    
                        
                        CWE-918
                        
            Server-Side Request Forgery (SSRF)
