MidnightBSD

Advisories for phantomjs-seo_project

CVE-2020-7739 MEDIUM

This affects all versions of package phantomjs-seo. It is possible for an attacker to craft a url that will be passed to a PhantomJS instance allowing for an SSRF attack.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
report@snyk.io 8.2 HIGH CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N 3.9 4.2

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-918,

Products Affected

Vendor Product Version
phantomjs-seo_project phantomjs-seo 1.0.0