github.com
https://github.com/ionicabizau/parse-url/commit/21c72ab9412228eea753e2abc48f8962707b1fe3 CVE-2022-2216
CRITICAL
Server-Side Request Forgery (SSRF) in ionicabizau/parse-url
Record summary
CVE-2022-2216 has a selected CVSS score of 9.8 (critical).
Description
Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url prior to 7.0.0.
Description source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
ionicabizau/parse-urlBrowse ionicabizau / ionicabizau/parse-url | CVE List | Before 7.0.0 | affected |
parse-urlBrowse npm / parse-url | GitHub Advisory | Before 6.0.1 · Fixed in 6.0.1 | affected |
References
3huntr.devConfirmation
https://huntr.dev/bounties/505a3d39-2723-4a06-b1f7-9b2d133c92e1 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-2216