-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The provided vulnerability information describes an SSRF issue in Apache ServiceComb Service-Center but does not include specific code references, commit diffs, or patch details. While the general attack vector (frontend API handling crafted requests) is identified, the lack of technical specifics about the implementation (e.g., function names, file paths, or HTTP request handling logic) makes it impossible to pinpoint exact vulnerable functions with high confidence. SSRF typically involves unsafe HTTP client usage with user-controlled input, but without concrete code examples or patch comparisons, we cannot definitively map this to specific functions in the codebase.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| github.com/apache/servicecomb-service-center | go | < 2.2.0 | 2.2.0 |
Ongoing coverage of React2Shell