Security Advisory
CVE-2022-31386
9.1
CRITICAL
Vulnerability Description
A Server-Side Request Forgery (SSRF) in the getFileBinary function of nbnbk cms 3 allows attackers to force the application to make arbitrary requests via injection of arbitrary URLs into the URL parameter.
Published Date
June 9, 2022
Official Source
NIST NVD Advisory