CVE-2023-6199 Information

Description

Book Stack version 23.10.2 allows filtering local files on the server. This is possible because the application is vulnerable to SSRF.

Reference

https://fluidattacks.com/advisories/imagination/ https://www.bookstackapp.com/blog/bookstack-release-v23-10-3/

Share on: