{"id":"GHSA-j9fq-vwqv-2fm2","summary":"Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url","details":"Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url prior to 8.1.0.","aliases":["CVE-2022-2900"],"modified":"2023-11-08T04:09:06.606507Z","published":"2022-09-15T00:00:24Z","database_specific":{"nvd_published_at":"2022-09-14T11:15:00Z","cwe_ids":["CWE-918"],"severity":"CRITICAL","github_reviewed":true,"github_reviewed_at":"2022-09-15T16:17:41Z"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-2900"},{"type":"WEB","url":"https://github.com/ionicabizau/parse-url/commit/b88c81df8f4c5168af454eaa4f92afa9349e4e13"},{"type":"PACKAGE","url":"https://github.com/IonicaBizau/parse-url"},{"type":"WEB","url":"https://huntr.dev/bounties/1b4c972a-abc8-41eb-a2e1-696db746b5fd"}],"affected":[{"package":{"name":"parse-url","ecosystem":"npm","purl":"pkg:npm/parse-url"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"8.1.0"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/09/GHSA-j9fq-vwqv-2fm2/GHSA-j9fq-vwqv-2fm2.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N"}]}