Loading HuntDB...

Server Side Request Forgery

Critical
L
Lark Technologies
Submitted None

Team Summary

Official summary from Lark Technologies

A SSRF (server side request forgery) vulnerability was found in the chat feature of Lark Suite on MacOS, which could have potentially been used to access services and web applications running on the internal network. We thank @jin0ne for reporting this to our team and confirming the resolution.

Reported by jin0ne

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Server-Side Request Forgery (SSRF)