Description
XXL-Job before v2.3.1 contains a Server-Side Request Forgery (SSRF) via the component /admin/controller/JobLogController.java.
Remediation
References
https://github.com/xuxueli/xxl-job/issues/3002
Related Vulnerabilities
CVE-2022-41935 Vulnerability in maven package org.xwiki.platform:xwiki-platform-livetable-ui
CVE-2021-41183 Vulnerability in maven package org.webjars.bowergithub.jquery:jquery-ui
CVE-2020-7676 Vulnerability in npm package angular
CVE-2016-10735 Vulnerability in maven package com.loopeer.android:bootstrap
CVE-2022-31129 Vulnerability in maven package org.webjars.bowergithub.moment:moment