High severity8.8NVD Advisory· Published Nov 17, 2022· Updated Jun 17, 2026
CVE-2022-43183
CVE-2022-43183
Description
XXL-Job before v2.3.1 contains a Server-Side Request Forgery (SSRF) via the component /admin/controller/JobLogController.java.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
com.xuxueli:xxl-job-coreMaven | < 2.4.0 | 2.4.0 |
Affected products
3- XXL-Job/XXL-Jobdescription
Patches
Vulnerability mechanics
References
5- github.com/xuxueli/xxl-job/issues/3002nvdExploitIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-83w4-x5w9-hf4hghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-43183ghsaADVISORY
- github.com/xuxueli/xxl-job/commit/9293c61ca0a8d54afdfb27cc568885ae639a14dcghsaWEB
- github.com/xuxueli/xxl-job/releases/tag/2.3.1ghsaWEB
News mentions
0No linked articles in our index yet.