Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2022-29631
Disclosure Date: June 06, 2022 (last updated February 23, 2025)
Jodd HTTP v6.0.9 was discovered to contain multiple CLRF injection vulnerabilities via the components jodd.http.HttpRequest#set and `jodd.http.HttpRequest#send. These vulnerabilities allow attackers to execute Server-Side Request Forgery (SSRF) via a crafted TCP payload.
0
Attacker Value
Unknown
CVE-2018-21234
Disclosure Date: May 21, 2020 (last updated February 21, 2025)
Jodd before 5.0.4 performs Deserialization of Untrusted JSON Data when setClassMetadataName is set.
0