Vulnerability Description
Server-Side Request Forgery (SSRF) in GitHub repository bookstackapp/bookstack prior to v23.08.
CVSS Score
2.4
LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bookstackapp | Bookstack | < 23.08 |
Related Weaknesses (CWE)
References
- https://github.com/bookstackapp/bookstack/commit/c324ad928dbdd54ce5b09eb0dabe60eVendor Advisory
- https://huntr.dev/bounties/9ce5cef6-e546-44e7-addf-a2726fa4e60cExploitThird Party Advisory
- https://github.com/bookstackapp/bookstack/commit/c324ad928dbdd54ce5b09eb0dabe60eVendor Advisory
- https://huntr.dev/bounties/9ce5cef6-e546-44e7-addf-a2726fa4e60cExploitThird Party Advisory
FAQ
What is CVE-2023-4624?
CVE-2023-4624 is a vulnerability with a CVSS score of 2.4 (LOW). Server-Side Request Forgery (SSRF) in GitHub repository bookstackapp/bookstack prior to v23.08.
How severe is CVE-2023-4624?
CVE-2023-4624 has been rated LOW with a CVSS base score of 2.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-4624?
Check the references section above for vendor advisories and patch information. Affected products include: Bookstackapp Bookstack.