This affects all versions of package phantomjs-seo. It is possible for an attacker to craft a url that will be passed to a PhantomJS instance allowing for an SSRF attack.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| phantomjs-seo(npm) | 0 | N/A | N/A |
CVSS Metrics