← Back to CVE List

CVE-2024-5885

Published: 2024-06-27T19:15Z
Last Modified: 2024-11-21T09:48Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
stangirard/quivr version 0.0.236 contains a Server-Side Request Forgery (SSRF) vulnerability. The application does not provide sufficient controls when crawling a website, allowing an attacker to access applications on the local network. This vulnerability could allow a malicious user to gain access to internal servers, the AWS metadata endpoint, and capture Supabase data. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt