CVE-2024-47830

CVSS V2 None CVSS V3 None
Description
Plane is an open-source project management tool. Plane uses the ** wildcard support to retrieve the image from any hostname as in /web/next.config.js. This may permit an attacker to induce the server side into performing requests to unintended locations. This vulnerability is fixed in 0.23.0.
Overview
  • CVE ID
  • CVE-2024-47830
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-10-11T14:55:36.961Z
  • Last Modified Date
  • 2024-10-11T15:02:13.439Z
History
Created Old Value New Value Data Type Notes
2024-10-12 13:29:45 Added to TrackCVE