SSRF in Open Distro for Elasticsearch

May 11, 20217 min read

After an interesting adventure, it's now possible to announce a new CVE-2021-31828 which effects Open Distro for ElasticSearch (ODFE) , versions until 1.12.0.2. Open Distro is a plugin for ElasticSearch that enhances security, alerting, SQL query...

SSRF in Open Distro for Elasticsearch
NGINX may be protecting your applications from traversal attacks without you even knowing