The external_request api call in App Studio (millicore)...
Moderate severity
Unreviewed
Published
May 14, 2022
to the GitHub Advisory Database
•
Updated Feb 10, 2023
Description
Published by the National Vulnerability Database
Sep 29, 2017
Published to the GitHub Advisory Database
May 14, 2022
Last updated
Feb 10, 2023
The external_request api call in App Studio (millicore) allows server side request forgery (SSRF). An attacker could use this flaw to probe the network internal resources, and access restricted endpoints.
References