CVE-2022-29631 Information

Description

Jodd HTTP v6.0.9 was discovered to contain multiple CLRF injection vulnerabilities via the components jodd.http.HttpRequestset and `jodd.http.HttpRequestsend. These vulnerabilities allow attackers to execute Server-Side Request Forgery (SSRF) via a crafted TCP payload.

Reference

https://github.com/oblac/jodd-http/issues/9 https://github.com/oblac/jodd/issues/787

Share on: