Server-Side Request Forgery Vulnerability in Appsmith by Appsmith Inc.
CVE-2022-38298
8.8HIGH
What is CVE-2022-38298?
A security flaw in Appsmith v1.7.11 enables attackers to exploit Server-Side Request Forgery (SSRF) by manipulating incoming requests, potentially exposing internal AWS metadata endpoints. This vulnerability can lead to unauthorized data access and poses a significant risk to applications leveraging Appsmith for cloud-based deployments.
