Server-side request forgery vulnerability exists in a-blog cms multiple versions. If this vulnerability is exploited, a remote unauthenticated attacker may gain access to sensitive information by sending a specially crafted request.
| Software | From | Fixed in |
|---|---|---|
| appleple / a-blog_cms | 2.8.0 | 2.8.85.x |
| appleple / a-blog_cms | 2.9.0 | 2.9.52.x |
| appleple / a-blog_cms | 2.10.0 | 2.10.63.x |
| appleple / a-blog_cms | 2.11.0 | 2.11.75.x |
| appleple / a-blog_cms | 3.0.0 | 3.0.47.x |
| appleple / a-blog_cms | 3.1.0 | 3.1.43.x |