Files
CVEs-PoC/2021/CVE-2021-43449.md
2025-09-29 21:09:30 +02:00

796 B

CVE-2021-43449

Description

ONLYOFFICE all versions as of 2021-11-08 is vulnerable to Server-Side Request Forgery (SSRF). The document editor service can be abused to read and serve arbitrary URLs as a document.

POC

Reference

Github