Vulnerabilities
Vulnerable Software
Jodd:  Security Vulnerabilities
Jodd HTTP v6.0.9 was discovered to contain multiple CLRF injection vulnerabilities via the components jodd.http.HttpRequest#set and `jodd.http.HttpRequest#send. These vulnerabilities allow attackers to execute Server-Side Request Forgery (SSRF) via a crafted TCP payload.
CVSS Score
7.5
EPSS Score
0.0
Published
2022-06-06
Jodd before 5.0.4 performs Deserialization of Untrusted JSON Data when setClassMetadataName is set.
CVSS Score
9.8
EPSS Score
0.252
Published
2020-05-21


Contact Us

Shodan ® - All rights reserved