com.github.psi-probe:psi-probe-core@4.3.2 vulnerabilities

  • latest version

    5.3.0

  • first published

    8 years ago

  • latest version published

    7 months ago

  • licenses detected

  • package registry

  • Direct Vulnerabilities

    Known vulnerabilities in the com.github.psi-probe:psi-probe-core package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Incorrect Privilege Assignment

    Affected versions of this package are vulnerable to Incorrect Privilege Assignment in the Session Attribute Handler component. An attacker can modify or remove session attributes without proper authorization by sending crafted requests to the affected component.

    How to fix Incorrect Privilege Assignment?

    There is no fixed version for com.github.psi-probe:psi-probe-core.

    [0,)
    • M
    Server-side Request Forgery (SSRF)

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) in the Whois component. An attacker can access internal resources and potentially exfiltrate sensitive information or manipulate server behavior by sending crafted requests through the affected process.

    How to fix Server-side Request Forgery (SSRF)?

    There is no fixed version for com.github.psi-probe:psi-probe-core.

    [0,)
    • M
    Improper Resource Shutdown or Release

    Affected versions of this package are vulnerable to Improper Resource Shutdown or Release in the handleRequestInternal() function of the Session Handler component. An attacker can cause a service disruption by sending specially crafted requests remotely.

    How to fix Improper Resource Shutdown or Release?

    There is no fixed version for com.github.psi-probe:psi-probe-core.

    [0,)