VYPR

Pydio Cells

by Abstrium

CVEs (2)

  • CVE-2023-32750Jun 8, 2023
    risk 0.03cvss epss 0.03

    Pydio Cells through 4.1.2 allows SSRF. For longer running processes, Pydio Cells allows for the creation of jobs, which are run in the background. The job "remote-download" can be used to cause the backend to send a HTTP GET request to a specified URL and save the response to a…

  • CVE-2023-2980May 30, 2023
    risk 0.00cvss epss 0.00

    A vulnerability classified as critical was found in Abstrium Pydio Cells 4.2.0. This vulnerability affects unknown code of the component User Creation Handler. The manipulation leads to improper control of resource identifiers. The attack can be initiated remotely. The exploit…