{ "schema_version": "1.4.0", "id": "GHSA-7p89-xjg8-39jf", "modified": "2022-05-24T17:21:34Z", "published": "2022-05-24T17:21:34Z", "aliases": [ "CVE-2020-13484" ], "details": "Bitrix24 through 20.0.975 allows SSRF via an intranet IP address in the services/main/ajax.php?action=attachUrlPreview url parameter, if the destination URL hosts an HTML document containing '