PT-2023-29923 · Bookstack · Bookstack

Published

2023-08-30

·

Updated

2023-09-01

·

CVE-2023-4624

CVSS v3.1

2.4

Low

VectorAV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions bookstack versions prior to v23.08
Description The issue is related to Server-Side Request Forgery (SSRF) in the GitHub repository bookstackapp/bookstack. This allows an attacker to make unauthorized requests on behalf of the server.
Recommendations For versions prior to v23.08, update to version v23.08 or later to resolve the issue.

Exploit

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2023-4624

Affected Products

Bookstack