Server-Side Request Forgery (SSRF) in Miniflare
CVE-2023-7078
What is CVE-2023-7078?
A vulnerability in Miniflare allows an attacker to exploit specially crafted HTTP requests, leading to the potential delivery of arbitrary HTTP and WebSocket requests from the server. This issue is particularly concerning for configurations where Miniflare listens on external network interfaces, providing a local network attacker access to other local servers. Users running versions prior to 3.19.0 of Miniflare are especially at risk and should consider upgrading their installations to mitigate this issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
miniflare Windows 0
miniflare Windows 0 < 3.20231030.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
