CyberSec.Space Logo
Back to CVE Browser

CVE-2018-1000138

CRITICAL
9.1
CVSS Severity Score
EPSS Score0.1000%
EPSS Percentile37.79th
PublishedMar 23, 2018
Last ModifiedDec 5, 2025

Vulnerability Description

I, Librarian version 4.8 and earlier contains a SSRF vulnerability in "url" parameter of getFromWeb in functions.php that can result in the attacker abusing functionality on the server to read or update internal resources.

Affected Platforms (CPE)

πŸ“¦
Scilico

I\, Librarian

<= 4.8

References & Advisories

Related Vulnerabilities