zrlog v3.1.5 was discovered to contain a Server-Side Request Forgery (SSRF) via the downloadUrl parameter.
Metrics
Affected Vendors & Products
References
History
Tue, 08 Jul 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-918 | |
Metrics |
cvssV3_1
|
Tue, 01 Jul 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | zrlog v3.1.5 was discovered to contain a Server-Side Request Forgery (SSRF) via the downloadUrl parameter. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-07-01T00:00:00.000Z
Updated: 2025-07-08T14:23:32.219Z
Reserved: 2025-04-22T00:00:00.000Z
Link: CVE-2025-45872

Updated: 2025-07-01T14:37:12.839Z

Status : Awaiting Analysis
Published: 2025-07-01T14:15:38.770
Modified: 2025-07-08T15:15:28.080
Link: CVE-2025-45872

No data.