← Back

Link Preview Js

link-preview-js

Vendor: Link Preview Js Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Link Preview Js Project
1Link Preview Js
Nov 21, 2024
Jul 1, 2022
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
The package link-preview-js before 2.1.16 are vulnerable to Server-side Request Forgery (SSRF) which allows attackers to send arbitrary requests to the local network and read the response. This is due to flawed DNS rebin...Show more
The package link-preview-js before 2.1.16 are vulnerable to Server-side Request Forgery (SSRF) which allows attackers to send arbitrary requests to the local network and read the response. This is due to flawed DNS rebinding protection.Show less