The does not validate a parameter before making a request to it, which could allow unauthenticated users to perform SSRF attack
2024-05-23T06:15:11.577
2025-06-30T18:44:29.540
Analyzed
CVSSv3.1: 9.1 (CRITICAL)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | apereo | central_authentication_service | - | Yes |