CVE-2024-1021: Rebuild HTTP Request readRawText server-side request forgery
A vulnerability, which was classified as critical, has been found in Rebuild up to 3.5.5. Affected by this issue is the function readRawText of the component HTTP Request Handler. The manipulation of the argument url leads to server-side request forgery. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-252290 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-1021?
CVE-2024-1021 is classified as a critical severity vulnerability.
What components are affected by CVE-2024-1021?
CVE-2024-1021 affects the HTTP Request Handler component in Rebuild versions up to 3.5.5.
What type of vulnerability is CVE-2024-1021?
CVE-2024-1021 is a server-side request forgery vulnerability.
How do I fix CVE-2024-1021?
To fix CVE-2024-1021, upgrade Rebuild to a version higher than 3.5.5.
What kind of attack can be launched using CVE-2024-1021?
An attacker can exploit CVE-2024-1021 to perform server-side request forgery attacks.