CVE-2024-55089

Rhymix before 2.1.24 is vulnerable to Server-Side Request Forgery (SSRF) in the background import data function because XML documents may contain external entities.
Configurations

Configuration 1 (hide)

cpe:2.3:a:rhymix:rhymix:2.1.19:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-12-18 18:15

Updated : 2026-02-20 20:25


NVD link : CVE-2024-55089

Mitre link : CVE-2024-55089

CVE.ORG link : CVE-2024-55089


JSON object : View

Products Affected

rhymix

  • rhymix
CWE
CWE-918

Server-Side Request Forgery (SSRF)

CWE-352

Cross-Site Request Forgery (CSRF)