CyberRota Analysis
AI-GeneratedThe Progress @progress/sitefinity-nextjs-sdk npm package versions 15.1.8326 through 15.4.8637 is vulnerable to a Server-Side Request Forgery (SSRF) flaw, enabling remote attackers to send requests to malicious servers. This vulnerability could lead to the exposure of sensitive information from the affected systems. Organizations using these specific versions of the package should prioritize patching to mitigate the risk of data breaches.
Original NVD Description
CWE-918: Server-Side Request Forgery in the Progress @progress/sitefinity-nextjs-sdk npm package versions 15.1.8326 through 15.4.8637 may allow a remote attacker to make server-side requests to an attacker-controlled host, potentially exposing sensitive information.