Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Anike-X

#45927of 53,630
5.5Total CVSS
Vulnerabilities · 1
PT-2025-19962
5.5
2025-05-06
Mrdoc · Mrdoc · CVE-2025-45250
**Name of the Vulnerable Software and Affected Versions** MrDoc versions 0.95 and before **Description** The issue is related to Server-Side Request Forgery (SSRF) in the `validate url` function of the `app doc/utils.py` file. This allows for potential exploitation. **Recommendations** For MrDoc versions 0.95 and before, as a temporary workaround, consider disabling the `validate url` function until a patch is available. Restrict access to the `app doc/utils.py` file to minimize the risk of exploitation.