Vulnerabilities

1 via 1 paths

Dependencies

258

Source

GitHub

Find, fix and prevent vulnerabilities in your code.

Severity
  • 1
Status
  • 1
  • 0
  • 0

medium severity
new

Server-side Request Forgery (SSRF)

  • Vulnerable module: @tauri-apps/plugin-http
  • Introduced through: @tauri-apps/plugin-http@2.7.0

Detailed paths

  • Introduced through: devtool@DianaSensei/developer-desktop-utils › @tauri-apps/plugin-http@2.7.0

Overview

@tauri-apps/plugin-http is a plugin-http

Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via the HTTP plugin's redirect-following logic, which checks the URL scope only against the initial URL requested by the frontend and not against subsequent redirect hops. A server on an allowed origin can issue a redirect to any other origin - including localhost services, internal hosts, and cloud metadata endpoints - and the plugin follows the full redirect chain, returning the response to the webview. This allows a network-adjacent attacker to leverage an open redirect or a controlled server to exfiltrate responses from otherwise-denied origins.

Remediation

Upgrade @tauri-apps/plugin-http to version 3.0.0-alpha.0 or higher.

References