First published: Tue Jun 27 2023(Updated: )
Server-Side Request Forgery (SSRF) in GitHub repository plantuml/plantuml prior to 1.2023.9.
Credit: security@huntr.dev security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
maven/net.sourceforge.plantuml:plantuml | <1.2023.9 | 1.2023.9 |
maven/net.sourceforge.plantuml:plantuml-mit | <1.2023.9 | 1.2023.9 |
PlantUML | <1.2023.9 | |
Fedora | =39 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-3432 is classified as a high severity vulnerability due to its exploitation potential through Server-Side Request Forgery (SSRF).
To fix CVE-2023-3432, upgrade to version 1.2023.9 or later of the affected PlantUML software.
CVE-2023-3432 affects all versions of PlantUML prior to 1.2023.9.
CVE-2023-3432 is a Server-Side Request Forgery (SSRF) vulnerability.
Yes, CVE-2023-3432 is applicable to users of Fedora 39 who are using the affected versions of PlantUML.