Launch Week Day 1: Announcing Security Design Review
UNKNOWN Maven

Eclipse GlassFish is vulnerable to Server Side Request Forgery attacks through specific endpoints

GHSA-f7h5-c625-3795 · CVE-2024-9408

Published · Modified

Description

In Eclipse GlassFish version 6.2.5, it is possible to perform a Server Side Request Forgery attack using specific endpoints.

Ready to move

Start Securing

Free, no credit card | First findings in minutes