drupal/entity_share_websub is vulnerable to Server-Side Request Forgery (SSRF)
52
Medium Risk
This module enables content sharing between sites in a hub-subscriber model. Affected versions do not sufficiently validate certain inputs, allowing an attacker to trigger server-side request forgery (SSRF) and cause the application to make unintended requests to internal or external resources.
You are affected if you are using a version that falls within the vulnerable range.
drupal/entity_share_websub is vulnerable to Server-Side Request Forgery (SSRF) in versions 0.0.1 - 1.1.1.
Upgrade the drupal/entity_share_websub library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant