Medium
CVSS 4.3
Overview
An issue in the Elasticsearch plugin of Appsmith v1.7.11 allows attackers to connect disallowed hosts to the AWS/GCP internal metadata endpoint.
An issue in the Elasticsearch plugin of Appsmith v1.7.11 allows attackers to con...
An issue in the Elasticsearch plugin of Appsmith v1.7.11 allows attackers to connect disallowed hosts to the AWS/GCP internal metadata endpoint.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: