Database/Container, Kubernetes & orchestration
Harbor: SSRF: a user who can edit projects scans the Harbor host's intranet
CVE-2020-13788Container, Kubernetes & orchestrationcurated
Impact
SSRF: a user who can edit projects scans the Harbor host's intranet
Who can reach it
Authenticated registry user
What to do
Upgrade Harbor; egress-restrict the registry pod
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.