CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.1. See the original NVD description below for full technical details.
CVE
CVE-2024-22243
Severity
HIGH
CVSS
8.1
EPSS
3.97%
Original NVD Description
Applications that use UriComponentsBuilder to parse an externally provided URL (e.g. through a query parameter) AND perform validation checks on the host of the parsed URL may be vulnerable to a open redirect https://cwe.mitre.org/data/definitions/601.html attack or to a SSRF attack if the URL is used after passing validation checks.