threat
engine
.sh
Back
·
··:··
Sign in
Account
free plan
Dashboard
Stack Monitoring
Notifications
Watchlist
Account & tokens
API docs
Pricing
Sign out
Home
/
Product
/
evilmartians imgproxy
Product
evilmartians imgproxy
2 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2023-30019
<= 3.14.0
imgproxy <=3.14.0 is vulnerable to Server-Side Request Forgery (SSRF) due to a lack of sanitization of the imageURL parameter.
5.3
MEDIUM
CVE-2023-1496
< 3.14.0
Cross-site Scripting (XSS) - Reflected in GitHub repository imgproxy/imgproxy prior to 3.14.0.
5.4
MEDIUM
SOC and Response
CVE triage
Stack monitoring
Am I affected
IOC triage
KEV catalog
Recently exploited
Daily brief
Change tracking
Detection Engineering
Coverage workspace
Detection coverage
Coverage check
Telemetry ceiling
SIEM query builder
Sigma rules
SIEM rules
YARA rules
Network rules
D3FEND
Threat Hunting
Threat actors
ATT&CK techniques
Attack paths
Indicators
Atomic tests
Red Team and Pentest
Exploitability triage
Recon pack
Attack paths
CAPEC patterns
Adversary emulation
Compliance and GRC
Framework mapping
Control assessment
Audit view
Atlas
Search
Threat actors
Techniques
Tools & malware
CWE
CAPEC
KEV catalog
Package vulns
About
All capabilities
Pricing
API docs
Live status
Privacy policy
Terms of service
threatengine.sh
Are you sure?
Cancel
Confirm
We use one first-party cookie to remember how you found us, only if you allow it. Everything the site needs to work uses essential cookies. See our
privacy policy
.
Essential only
Accept all