CVE编号 | CVE-2024-28607 |
---|---|
发布日期 | 2025-03-11T00:00:00.000Z |
更新日期 | 2025-03-11T13:18:51.833Z |
状态 | PUBLISHED |
受影响的供应商 | librasean |
受影响的产品 | IP-Utils |
描述 | The ip-utils package through 2.4.0 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperly categorized as globally routable via a falsy isPrivate return value. |
参考链接: