Unrated severityNVD Advisory· Published Nov 20, 2023· Updated May 19, 2025
Book Stack v23.10.2 - LFR via Blind SSRF
CVE-2023-6199
Description
Book Stack version 23.10.2 allows filtering local files on the server. This is possible because the application is vulnerable to SSRF.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: = 23.10.2
- BookStack/BookStackv5Range: 23.10.2
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.