DNN (aka DotNetNuke) before 9.2.0 suffers from a Server-Side Request Forgery (SSRF) vulnerability in the DnnImageHandler class. Attackers may be able to access information about internal network resources.
| Software | From | Fixed in |
|---|---|---|
| dnnsoftware / dotnetnuke | - | 9.2.0 |
DotNetNuke.Core
|
- | 9.2.0 |