Apache · Apache Fineract · CVE-2023-25195
**Name of the Vulnerable Software and Affected Versions**
Apache Fineract versions 1.4 through 1.8.3
**Description**
The issue is a Server-Side Request Forgery (SSRF) vulnerability. Authorized users with limited permissions can gain access to the server and may be able to use the server for any outbound traffic.
**Recommendations**
For Apache Fineract versions 1.4 through 1.8.3, update to a version that contains a fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.