Server-Side Request Forgery Vulnerability in ONLYOFFICE Document Editor
CVE-2021-43449
8.1HIGH
What is CVE-2021-43449?
ONLYOFFICE Document Editor is susceptible to a vulnerability that allows malicious users to exploit the document editor service, potentially reading and serving arbitrary URLs. This SSRF flaw can lead to unauthorized access and information disclosure, compromising the integrity and confidentiality of data processed within ONLYOFFICE environments.
