GHSA-ffxg-5f8m-h72j
GitHub Security Advisory
Rocket.Chat Server-Side Request Forgery (SSRF) vulnerability
✓ GitHub Reviewed
HIGH
Has CVE
Advisory Details
A Server-Side Request Forgery (SSRF) affects Rocket.Chat's Twilio webhook endpoint before version 6.10.1.
Affected Packages
npm
rocket.chat
Affected versions:
0
(fixed in 6.10.1)
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: June 15, 2025 6:24 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.