In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Server-side Request Forgery (SSRF) vulnerabilities in an interactive lesson.
Start learningUpgrade nuxt-og-image to version 6.2.5 or higher.
nuxt-og-image is an Enlightened OG Image generation for Nuxt.
Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via user-controlled parameters in the /_og/d/ endpoint. An attacker can access internal network resources or sensitive data by injecting crafted URLs through parameters such as style or html. This may allow scanning of internal ports and services, or reading sensitive data from cloud infrastructure metadata services when verbose error output is enabled.