CVE-2019-13020
Published Aug 26, 2019The fetch API in Tightrope Media Carousel before 7.1.3 has CarouselAPI/v0/fetch?url= SSRF. This has two potential areas for abuse. First, a specially crafted URL could be used in…
Vendor/product archive
1 CVEs tagged to trms / tightrope_media_carousel — 1 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.
The fetch API in Tightrope Media Carousel before 7.1.3 has CarouselAPI/v0/fetch?url= SSRF. This has two potential areas for abuse. First, a specially crafted URL could be used in…