Vulnerability Details CVE-2023-42812
Galaxy is an open-source platform for FAIR data analysis. Prior to version 22.05, Galaxy is vulnerable to server-side request forgery, which allows a malicious to issue arbitrary HTTP/HTTPS requests from the application server to internal hosts and read their responses. Version 22.05 contains a patch for this issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.6%
CVSS Severity
CVSS v3 Score 6.3
Products affected by CVE-2023-42812
-
cpe:2.3:a:galaxyproject:galaxy:13.01
-
cpe:2.3:a:galaxyproject:galaxy:13.01.1
-
cpe:2.3:a:galaxyproject:galaxy:13.02
-
cpe:2.3:a:galaxyproject:galaxy:13.02.1
-
cpe:2.3:a:galaxyproject:galaxy:13.04
-
cpe:2.3:a:galaxyproject:galaxy:13.04.1
-
cpe:2.3:a:galaxyproject:galaxy:13.06
-
cpe:2.3:a:galaxyproject:galaxy:13.06.1
-
cpe:2.3:a:galaxyproject:galaxy:13.08
-
cpe:2.3:a:galaxyproject:galaxy:13.08.1
-
cpe:2.3:a:galaxyproject:galaxy:13.11
-
cpe:2.3:a:galaxyproject:galaxy:13.11.1
-
cpe:2.3:a:galaxyproject:galaxy:14.02
-
cpe:2.3:a:galaxyproject:galaxy:14.02.1
-
cpe:2.3:a:galaxyproject:galaxy:14.04
-
cpe:2.3:a:galaxyproject:galaxy:14.04.1
-
cpe:2.3:a:galaxyproject:galaxy:14.06
-
cpe:2.3:a:galaxyproject:galaxy:14.06.1
-
cpe:2.3:a:galaxyproject:galaxy:14.08
-
cpe:2.3:a:galaxyproject:galaxy:14.08.1
-
cpe:2.3:a:galaxyproject:galaxy:14.10
-
cpe:2.3:a:galaxyproject:galaxy:14.10.1
-
cpe:2.3:a:galaxyproject:galaxy:14.10.2
-
cpe:2.3:a:galaxyproject:galaxy:14.10.3
-
cpe:2.3:a:galaxyproject:galaxy:15.01
-
cpe:2.3:a:galaxyproject:galaxy:15.01.1
-
cpe:2.3:a:galaxyproject:galaxy:15.01.2
-
cpe:2.3:a:galaxyproject:galaxy:15.01.3
-
cpe:2.3:a:galaxyproject:galaxy:15.01.4
-
cpe:2.3:a:galaxyproject:galaxy:15.03
-
cpe:2.3:a:galaxyproject:galaxy:15.03.1
-
cpe:2.3:a:galaxyproject:galaxy:15.03.2
-
cpe:2.3:a:galaxyproject:galaxy:15.03.3
-
cpe:2.3:a:galaxyproject:galaxy:15.03.4
-
cpe:2.3:a:galaxyproject:galaxy:15.05
-
cpe:2.3:a:galaxyproject:galaxy:15.05.1
-
cpe:2.3:a:galaxyproject:galaxy:15.05.2
-
cpe:2.3:a:galaxyproject:galaxy:15.07
-
cpe:2.3:a:galaxyproject:galaxy:15.07.1
-
cpe:2.3:a:galaxyproject:galaxy:15.10
-
cpe:2.3:a:galaxyproject:galaxy:15.10.1
-
cpe:2.3:a:galaxyproject:galaxy:15.10.2
-
cpe:2.3:a:galaxyproject:galaxy:16.01
-
cpe:2.3:a:galaxyproject:galaxy:16.04
-
cpe:2.3:a:galaxyproject:galaxy:16.07
-
cpe:2.3:a:galaxyproject:galaxy:16.1.0
-
cpe:2.3:a:galaxyproject:galaxy:16.1.1
-
cpe:2.3:a:galaxyproject:galaxy:16.1.2
-
cpe:2.3:a:galaxyproject:galaxy:16.1.3
-
cpe:2.3:a:galaxyproject:galaxy:16.1.4
-
cpe:2.3:a:galaxyproject:galaxy:16.1.5
-
cpe:2.3:a:galaxyproject:galaxy:16.1.6
-
cpe:2.3:a:galaxyproject:galaxy:16.1.7
-
cpe:2.3:a:galaxyproject:galaxy:16.1.8
-
cpe:2.3:a:galaxyproject:galaxy:16.1.9
-
cpe:2.3:a:galaxyproject:galaxy:16.10
-
cpe:2.3:a:galaxyproject:galaxy:16.10.1
-
cpe:2.3:a:galaxyproject:galaxy:16.10.10
-
cpe:2.3:a:galaxyproject:galaxy:16.10.2
-
cpe:2.3:a:galaxyproject:galaxy:16.10.3
-
cpe:2.3:a:galaxyproject:galaxy:16.10.4
-
cpe:2.3:a:galaxyproject:galaxy:16.10.5
-
cpe:2.3:a:galaxyproject:galaxy:16.10.6
-
cpe:2.3:a:galaxyproject:galaxy:16.10.7
-
cpe:2.3:a:galaxyproject:galaxy:16.10.8
-
cpe:2.3:a:galaxyproject:galaxy:16.10.9
-
cpe:2.3:a:galaxyproject:galaxy:16.4.0
-
cpe:2.3:a:galaxyproject:galaxy:16.7.0
-
cpe:2.3:a:galaxyproject:galaxy:16.7.1
-
cpe:2.3:a:galaxyproject:galaxy:16.7.10
-
cpe:2.3:a:galaxyproject:galaxy:16.7.2
-
cpe:2.3:a:galaxyproject:galaxy:16.7.3
-
cpe:2.3:a:galaxyproject:galaxy:16.7.4
-
cpe:2.3:a:galaxyproject:galaxy:16.7.5
-
cpe:2.3:a:galaxyproject:galaxy:16.7.6
-
cpe:2.3:a:galaxyproject:galaxy:16.7.7
-
cpe:2.3:a:galaxyproject:galaxy:16.7.8
-
cpe:2.3:a:galaxyproject:galaxy:16.7.9
-
cpe:2.3:a:galaxyproject:galaxy:17.01
-
cpe:2.3:a:galaxyproject:galaxy:17.05
-
cpe:2.3:a:galaxyproject:galaxy:17.09
-
cpe:2.3:a:galaxyproject:galaxy:17.1.0
-
cpe:2.3:a:galaxyproject:galaxy:17.1.1
-
cpe:2.3:a:galaxyproject:galaxy:17.1.2
-
cpe:2.3:a:galaxyproject:galaxy:17.5.0
-
cpe:2.3:a:galaxyproject:galaxy:17.5.1
-
cpe:2.3:a:galaxyproject:galaxy:17.5.10
-
cpe:2.3:a:galaxyproject:galaxy:17.5.11
-
cpe:2.3:a:galaxyproject:galaxy:17.5.2
-
cpe:2.3:a:galaxyproject:galaxy:17.5.3
-
cpe:2.3:a:galaxyproject:galaxy:17.5.4
-
cpe:2.3:a:galaxyproject:galaxy:17.5.5
-
cpe:2.3:a:galaxyproject:galaxy:17.5.6
-
cpe:2.3:a:galaxyproject:galaxy:17.5.7
-
cpe:2.3:a:galaxyproject:galaxy:17.5.8
-
cpe:2.3:a:galaxyproject:galaxy:17.5.9
-
cpe:2.3:a:galaxyproject:galaxy:17.9.0
-
cpe:2.3:a:galaxyproject:galaxy:17.9.1
-
cpe:2.3:a:galaxyproject:galaxy:17.9.10
-
cpe:2.3:a:galaxyproject:galaxy:17.9.11
-
cpe:2.3:a:galaxyproject:galaxy:17.9.12
-
cpe:2.3:a:galaxyproject:galaxy:17.9.2
-
cpe:2.3:a:galaxyproject:galaxy:17.9.4
-
cpe:2.3:a:galaxyproject:galaxy:17.9.5
-
cpe:2.3:a:galaxyproject:galaxy:17.9.6
-
cpe:2.3:a:galaxyproject:galaxy:17.9.7
-
cpe:2.3:a:galaxyproject:galaxy:17.9.8
-
cpe:2.3:a:galaxyproject:galaxy:17.9.9
-
cpe:2.3:a:galaxyproject:galaxy:18.01
-
cpe:2.3:a:galaxyproject:galaxy:18.05
-
cpe:2.3:a:galaxyproject:galaxy:18.09
-
cpe:2.3:a:galaxyproject:galaxy:18.1.0
-
cpe:2.3:a:galaxyproject:galaxy:18.5.1
-
cpe:2.3:a:galaxyproject:galaxy:18.5.10
-
cpe:2.3:a:galaxyproject:galaxy:18.5.11
-
cpe:2.3:a:galaxyproject:galaxy:18.5.12
-
cpe:2.3:a:galaxyproject:galaxy:18.5.13
-
cpe:2.3:a:galaxyproject:galaxy:18.5.14
-
cpe:2.3:a:galaxyproject:galaxy:18.5.15
-
cpe:2.3:a:galaxyproject:galaxy:18.5.2
-
cpe:2.3:a:galaxyproject:galaxy:18.5.3
-
cpe:2.3:a:galaxyproject:galaxy:18.5.4
-
cpe:2.3:a:galaxyproject:galaxy:18.5.5
-
cpe:2.3:a:galaxyproject:galaxy:18.5.6
-
cpe:2.3:a:galaxyproject:galaxy:18.5.7
-
cpe:2.3:a:galaxyproject:galaxy:18.5.8
-
cpe:2.3:a:galaxyproject:galaxy:18.5.9
-
cpe:2.3:a:galaxyproject:galaxy:18.9.0
-
cpe:2.3:a:galaxyproject:galaxy:18.9.1
-
cpe:2.3:a:galaxyproject:galaxy:18.9.2
-
cpe:2.3:a:galaxyproject:galaxy:19.01
-
cpe:2.3:a:galaxyproject:galaxy:19.05
-
cpe:2.3:a:galaxyproject:galaxy:19.05.2
-
cpe:2.3:a:galaxyproject:galaxy:19.09
-
cpe:2.3:a:galaxyproject:galaxy:19.5.0
-
cpe:2.3:a:galaxyproject:galaxy:19.5.1
-
cpe:2.3:a:galaxyproject:galaxy:19.5.2
-
cpe:2.3:a:galaxyproject:galaxy:20.01
-
cpe:2.3:a:galaxyproject:galaxy:20.05
-
cpe:2.3:a:galaxyproject:galaxy:20.09
-
cpe:2.3:a:galaxyproject:galaxy:21.01
-
cpe:2.3:a:galaxyproject:galaxy:21.05
-
cpe:2.3:a:galaxyproject:galaxy:21.09
-
cpe:2.3:a:galaxyproject:galaxy:22.01
-
cpe:2.3:a:galaxyproject:galaxy:22.01.1