CVE-2017-17697: Linuxfoundation Harbor
High severity, CVSS 8.6. EPSS: 1.4% chance of exploitation in the next 30 days.
The Ping() function in ui/api/target.go in Harbor through 1.3.0-rc4 has SSRF via the endpoint parameter to /api/targets/ping.
Affected products
- Linuxfoundation Harbor: before 1.3.0 (fixed in 1.3.0); version 1.3.0 only
Published 2017-12-15. Last modified 2026-06-17.