CVE z tagiem ssrf — 200 wyników. ← Wszystkie tagi

CVE-2024-21893 🔴 Łataj teraz KEV

A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) and Ivanti Neurons for ZTA allows an attacker to access certain restricted resou…

8.2 CVSS
100.0% EPSS
ivantissrf 2024-01-31
CVE-2021-21975 🔴 Łataj teraz KEV
cloud

Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forger…

7.5 CVSS
78.3% EPSS
vmwareexploitssrf 2021-03-31
CVE-2016-3718 🔴 Łataj teraz KEV
os

The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.

5.5 CVSS
83.8% EPSS
redhatssrf 2016-05-05
CVE-2026-20230 🔴 Łataj teraz KEV
network

A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote attacker to conduct server-…

8.6 CVSS
41.7% EPSS
ciscoexploitssrf 2026-06-03
CVE-2026-15409 🔴 Łataj teraz KEV
network

A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended…

10.0 CVSS
1.3% EPSS
sonicwallssrf 2026-07-14
CVE-2020-24881 🔴 Łataj teraz

SSRF exists in osTicket before 1.14.3, where an attacker can add malicious file to server or perform port scanning.

9.8 CVSS
73.3% EPSS
CVE-2024-22243 🟠 Łataj w tym tygodniu

Applications that use UriComponentsBuilder to parse an externally provided URL (e.g. through a query parameter) AND perform validation checks on the host of the parsed URL may be vulnerable to a open redirect https://cw…

8.1 CVSS
61.7% EPSS
ssrf 2024-02-23
CVE-2022-45835 ⚪ Do wiadomości

Server-Side Request Forgery (SSRF) vulnerability in PhonePe PhonePe Payment Solutions.This issue affects PhonePe Payment Solutions: from n/a through 1.0.15.

5.8 CVSS
71.1% EPSS
phonepessrf 2023-11-13
CVE-2023-2249 🟠 Łataj w tym tygodniu

The wpForo Forum plugin for WordPress is vulnerable to Local File Include, Server-Side Request Forgery, and PHAR Deserialization in versions up to, and including, 2.1.7. This is due to the insecure use of file_get_conten…

8.8 CVSS
48.2% EPSS
CVE-2026-44578 🟠 Łataj w tym tygodniu

Next.js is a React framework for building full-stack web applications. From 13.4.13 to before 15.5.16 and 16.2.5, self-hosted applications using the built-in Node.js server can be vulnerable to server-side request forger…

8.6 CVSS
38.9% EPSS
vercelssrf 2026-05-13
CVE-2023-27159 🟡 Monitoruj

Appwrite up to v1.2.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /v1/avatars/favicon. This vulnerability allows attackers to access network resources and sensitive information via a …

7.5 CVSS
36.2% EPSS
appwriteexploitssrf 2023-03-31
CVE-2022-45362 🟡 Monitoruj

Server-Side Request Forgery (SSRF) vulnerability in Paytm Paytm Payment Gateway.This issue affects Paytm Payment Gateway: from n/a through 2.7.0.

7.2 CVSS
32.9% EPSS
paytmssrf 2023-12-07
CVE-2024-51665 ⚪ Do wiadomości

Server-Side Request Forgery (SSRF) vulnerability in Noor Alam Magical Addons For Elementor magical-addons-for-elementor allows Server Side Request Forgery.This issue affects Magical Addons For Elementor: from n/a through…

4.9 CVSS
35.4% EPSS
wpthemespacessrf 2024-11-04
CVE-2022-38580 🟠 Łataj w tym tygodniu

Zalando Skipper v0.13.236 is vulnerable to Server-Side Request Forgery (SSRF).

9.8 CVSS
10.6% EPSS
zalandossrf 2022-10-25
CVE-2024-55875 🟠 Łataj w tym tygodniu

http4k is a functional toolkit for Kotlin HTTP applications. Prior to version 6.50.0.0, there is a potential XXE (XML External Entity Injection) vulnerability when http4k handling malicious XML contents within requests, …

9.8 CVSS
8.1% EPSS
dosssrfxxe 2024-12-12
CVE-2020-25466 🔴 Łataj teraz

A SSRF vulnerability exists in the downloadimage interface of CRMEB 3.0, which can remotely download arbitrary files on the server and remotely execute arbitrary code.

9.8 CVSS
2.4% EPSS
crmebexploitssrf 2020-10-23
CVE-2024-43989 🟡 Monitoruj

Server-Side Request Forgery (SSRF) vulnerability in Firsh Justified Image Grid justified-image-grid.This issue affects Justified Image Grid: from n/a through <= 4.6.1.

7.5 CVSS
13.8% EPSS
ssrf 2024-09-23
CVE-2021-42637 🔴 Łataj teraz

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability.

9.8 CVSS
2.2% EPSS
CVE-2026-33340 🔴 Łataj teraz

LoLLMs WEBUI provides the Web user interface for Lord of Large Language and Multi modal Systems. A critical Server-Side Request Forgery (SSRF) vulnerability has been identified in all known existing versions of `lollms-w…

9.1 CVSS
5.7% EPSS
lollmsexploitssrf 2026-03-24
CVE-2017-17674 🟠 Łataj w tym tygodniu

BMC Remedy Mid Tier 9.1SP3 is affected by remote and local file inclusion. Due to the lack of restrictions on what can be targeted, the system can be vulnerable to attacks such as system fingerprinting, internal port sca…

9.8 CVSS
2.1% EPSS
bmclfircessrf 2021-05-19
CVE-2024-42467 🟠 Łataj w tym tygodniu

openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu. In versions 3.4.0.M4 through 4.2.0,, the proxy endpoint of openHAB's CometVisu add-on can be accessed…

10.0 CVSS
1.0% EPSS
openhabrcessrfxss 2024-08-12
CVE-2026-32871 🔴 Łataj teraz

FastMCP is a Pythonic way to build MCP servers and clients. Prior to version 3.2.0, the OpenAPIProvider in FastMCP exposes internal APIs to MCP clients by parsing OpenAPI specifications. The RequestDirector class is resp…

10.0 CVSS
1.0% EPSS
CVE-2023-35175 🟠 Łataj w tym tygodniu

Certain HP LaserJet Pro print products are potentially vulnerable to Potential Remote Code Execution and/or Elevation of Privilege via Server-Side Request Forgery (SSRF) using the Web Service Eventing model.

9.8 CVSS
1.8% EPSS
CVE-2026-33107 🟠 Łataj w tym tygodniu
appscloud

Server-side request forgery (ssrf) in Azure Databricks allows an unauthorized attacker to elevate privileges over a network.

10.0 CVSS
0.7% EPSS
microsoftssrf 2026-04-03
CVE-2026-32186 🟠 Łataj w tym tygodniu
appscloud

Server-side request forgery (ssrf) in Microsoft Bing allows an unauthorized attacker to elevate privileges over a network.

10.0 CVSS
0.7% EPSS
microsoftssrf 2026-04-03
CVE-2025-62718 🔴 Łataj teraz

Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.0 and 0.31.0, Axios does not correctly handle hostname normalization when checking NO_PROXY rules. Requests to loopback addresses like local…

9.9 CVSS
1.2% EPSS
axiosexploitssrf 2026-04-09
CVE-2026-14812 🟠 Łataj w tym tygodniu

The Premium SEO WordPress plugin is malicious: it ships an unauthenticated backdoor that creates a hidden administrator account and, in some builds, also enables remote code execution, server-side request forgery and arb…

10.0 CVSS
0.6% EPSS
rcessrf 2026-08-06
CVE-2026-65801 🟠 Łataj w tym tygodniu

Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to elevate privileges over a network.

10.0 CVSS
0.5% EPSS
ssrf 2026-08-20
CVE-2026-48331 🟠 Łataj w tym tygodniu

Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. Exploitation of this issue does not require user interaction. Scope is changed.

10.0 CVSS
0.5% EPSS
CVE-2026-47938 🟠 Łataj w tym tygodniu

Adobe Campaign Classic (ACC) versions 7.4.3 build 9394 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. Exploitation of this issue does not require…

10.0 CVSS
0.4% EPSS
CVE-2026-48332 🟡 Monitoruj

ColdFusion is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and gai…

7.7 CVSS
11.9% EPSS
adobessrf 2026-07-14
CVE-2026-33712 🟠 Łataj w tym tygodniu

Typebot is a chatbot builder tool. In versions 3.15.2 and prior, the preview chat endpoint (POST /api/v1/typebots/{typebotId}/preview/startChat) allows unauthenticated users to achieve Server-Side Request Forgery (SSRF) …

10.0 CVSS
0.4% EPSS
ssrf 2026-05-22
CVE-2026-57100 🟠 Łataj w tym tygodniu
appscloud

Server-side request forgery (ssrf) in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network.

9.9 CVSS
0.6% EPSS
microsoftssrf 2026-07-02
CVE-2026-45499 🟠 Łataj w tym tygodniu
appscloud

Server-side request forgery (ssrf) in Azure OpenAI allows an authorized attacker to elevate privileges over a network.

9.9 CVSS
0.6% EPSS
microsoftssrf 2026-07-02
CVE-2026-32169 🟠 Łataj w tym tygodniu
appscloud

Server-side request forgery (ssrf) in Azure Cloud Shell allows an unauthorized attacker to elevate privileges over a network.

10.0 CVSS
0.1% EPSS
microsoftssrf 2026-03-19
CVE-2026-34976 🔴 Łataj teraz

Dgraph is an open source distributed GraphQL database. Prior to 25.3.1, the restoreTenant admin mutation is missing from the authorization middleware config (admin.go), making it completely unauthenticated. Unlike the si…

10.0 CVSS
0.1% EPSS
dgraphexploitssrf 2026-04-06
CVE-2026-69851 🟠 Łataj w tym tygodniu

Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.

9.9 CVSS
0.4% EPSS
ssrf 2026-08-20
CVE-2026-55454 🔴 Łataj teraz

Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, the bundled Caddy reverse-proxy's admin API — which has no authentication by default — is bound on 0.0.0.0:2019 inside the conta…

9.9 CVSS
0.3% EPSS
appsmithexploitssrf 2026-06-24
CVE-2026-55115 🟠 Łataj w tym tygodniu

A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) in UniFi Protect Application to escalate privileges on the host device.

9.9 CVSS
0.2% EPSS
uissrf 2026-07-02
CVE-2024-58351 🟠 Łataj w tym tygodniu

Flowise before 2.1.4 allows configuration to be injected into the Chainflow during execution via the overrideConfig option, supported in both the frontend web integration and the backend Prediction API. Because this feat…

9.8 CVSS
0.7% EPSS
dosrcessrf 2026-06-20
CVE-2026-40089 🟠 Łataj w tym tygodniu

Sonicverse is a Self-hosted Docker Compose stack for live radio streaming. The Sonicverse Radio Audio Streaming Stack dashboard contains a Server-Side Request Forgery (SSRF) vulnerability in its API client (apps/dashboar…

9.9 CVSS
0.1% EPSS
sonicversessrf 2026-04-09
CVE-2026-9813 🟠 Łataj w tym tygodniu

FlowIntel up to version 3.3.0 contains a server-side request forgery (SSRF) vulnerability in the external reference URL probe functionality in app/case/task.py. An attacker who can submit an external reference URL can ca…

9.9 CVSS
0.0% EPSS
flowintelssrf 2026-05-28
CVE-2026-43986 🟠 Łataj w tym tygodniu

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.17.1 expose a public `/image/<hash>` route that resolves attacker-controlled entries from `image_hash_lookup` and replays…

9.9 CVSS
0.0% EPSS
ssrf 2026-06-04
CVE-2026-26137 🟠 Łataj w tym tygodniu
appscloud

Server-side request forgery (ssrf) in Microsoft Exchange allows an authorized attacker to elevate privileges over a network.

9.9 CVSS
0.0% EPSS
microsoftssrf 2026-03-19
CVE-2026-30118 🟠 Łataj w tym tygodniu

scalar/astro v0.1.13 was discovered to contain a Server-Side Request Forgery (SSRF) in the scalar_url query parameter of the Scalar Proxy endpoint. This vulnerability allows unauthenticated attackers to force the backend…

9.8 CVSS
0.5% EPSS
CVE-2026-15732 🟠 Łataj w tym tygodniu

A Server-Side Request Forgery (SSFR) vulnerability exist in WGDashboard version 4.2.3 and earlier. The webhook functionality allows authenticated attackers to make arbitrary HTTP requests and retrieve responses.

9.8 CVSS
0.4% EPSS
ssrf 2026-08-06
CVE-2026-26338 🟠 Łataj w tym tygodniu

Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve server-side request forgery (SSRF) through the document processing functionality.

9.8 CVSS
0.4% EPSS
hylandssrf 2026-02-19
CVE-2023-1725 🟠 Łataj w tym tygodniu

Server-Side Request Forgery (SSRF) vulnerability in Infoline Project Management System allows Server Side Request Forgery.This issue affects Project Management System: before 4.09.31.125.

9.8 CVSS
0.3% EPSS
infoline-trssrf 2023-03-30
CVE-2026-34084 🔴 Łataj teraz

PhpSpreadsheet is a library for reading and writing spreadsheet files. In versions 1.30.2 and earlier, 2.0.0 through 2.1.14, 2.2.0 through 2.4.3, 3.3.0 through 3.10.3, and 4.0.0 through 5.5.0, when the filename argument …

9.8 CVSS
0.2% EPSS
CVE-2025-11242 🟠 Łataj w tym tygodniu

Server-Side Request Forgery (SSRF) vulnerability in Teknolist Computer Systems Software Publishing Industry and Trade Inc. Okulistik allows Server Side Request Forgery. This issue affects Okulistik: through 21102025.

9.8 CVSS
0.1% EPSS
ssrf 2026-02-10
CVE-2025-70042 🟠 Łataj w tym tygodniu

An issue pertaining to CWE-918: Server-Side Request Forgery was discovered in oslabs-beta ThermaKube master.

9.8 CVSS
0.1% EPSS
opensourcelabsssrf 2026-03-09
CVE-2026-2286 🟠 Łataj w tym tygodniu

CrewAI contains a server-side request forgery vulnerability that enables content acquisition from internal and cloud services, facilitated by the RAG search tools not properly validating URLs provided at runtime.

9.8 CVSS
0.1% EPSS
crewaissrf 2026-03-30
CVE-2026-8034 🟠 Łataj w tym tygodniu
dev

A server-side request forgery (SSRF) vulnerability was identified in the GitHub Enterprise Server notebook viewer that allowed an attacker to access internal services by exploiting URL parser confusion between the valida…

9.8 CVSS
0.0% EPSS
githubssrf 2026-05-07
CVE-2026-44335 🔴 Łataj teraz

PraisonAI is a multi-agent teams system. Prior to version 1.6.32, the URL checking logic in PraisonAI has a logical flaw that could be bypassed by attackers, leading to SSRF attacks. This issue has been patched in versio…

9.8 CVSS
0.0% EPSS
praisonexploitssrf 2026-05-08
CVE-2026-4789 🟠 Łataj w tym tygodniu

Kyverno, versions 1.16.0 and later, are vulnerable to SSRF due to unrestricted CEL HTTP functions.

9.8 CVSS
0.0% EPSS
kyvernossrf 2026-03-30
CVE-2022-3708 🟠 Łataj w tym tygodniu
cloud

The Web Stories plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including 1.24.0 due to insufficient validation of URLs supplied via the 'url' parameter found via the /v1/hotlink/…

9.6 CVSS
0.9% EPSS
googlessrf 2022-10-28
CVE-2026-26135 🟠 Łataj w tym tygodniu
appscloud

Server-side request forgery (ssrf) in Azure Custom Locations Resource Provider (RP) allows an authorized attacker to elevate privileges over a network.

9.6 CVSS
0.6% EPSS
microsoftssrf 2026-04-03
CVE-2026-22874 🟠 Łataj w tym tygodniu

Gitea versions up to and including 1.26.2 have incomplete SSRF protection in webhook and migration allow-list filtering.

9.6 CVSS
0.5% EPSS
ssrf 2026-07-03
CVE-2026-48259 🟠 Łataj w tym tygodniu

Adobe Experience Manager is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could leverage this v…

9.6 CVSS
0.4% EPSS
adobercessrf 2026-07-14
CVE-2026-31818 🔴 Łataj teraz

Budibase is an open-source low-code platform. Prior to version 3.33.4, a server-side request forgery (SSRF) vulnerability exists in Budibase's REST datasource connector. The platform's SSRF protection mechanism (IP black…

9.6 CVSS
0.4% EPSS
budibaseexploitssrf 2026-04-03
CVE-2026-53513 🟠 Łataj w tym tygodniu

Better Auth is an authentication and authorization library for TypeScript. Prior to 1.6.11, the @better-auth/sso plugin's POST /sso/register and POST /sso/update-provider endpoints accept attacker-controlled oidcConfig.u…

9.6 CVSS
0.3% EPSS
ssrf 2026-07-15
CVE-2026-12605 🟠 Łataj w tym tygodniu

In Eclipse GlassFish versions 8.0.x before 8.0.4, CSRF + SSRF in DownloadServlet ContentSources leaks the admin `gfresttoken` to attacker-controlled host if the victim is authenticated into the Admin Console -\> full una…

9.6 CVSS
0.2% EPSS
ssrf 2026-08-06
CVE-2026-9312 🟡 Monitoruj
dev

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insufficient input valida…

8.2 CVSS
6.6% EPSS
CVE-2026-14529 🟠 Łataj w tym tygodniu

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 traditional is vulnerable to server-side request forgery (SSRF) when the SIP container feature (sipSe…

9.4 CVSS
0.4% EPSS
ibmssrf 2026-07-29
CVE-2025-34282 🟠 Łataj w tym tygodniu

ThingsBoard versions < 4.2.1 contain a server-side request forgery (SSRF) vulnerability in the dashboard's Image Upload Gallery feature. An attacker can upload a malicious SVG file that references a remote URL. If the se…

9.1 CVSS
1.7% EPSS
thingsboardssrf 2025-10-17
CVE-2026-15378 🟠 Łataj w tym tygodniu

A flaw was found in the `guardrails-detectors` component. This vulnerability allows a remote attacker to perform a blind Server-Side Request Forgery (SSRF) by submitting a specially crafted XML Schema Definition (XSD) st…

9.3 CVSS
0.4% EPSS
ssrf 2026-07-10
CVE-2026-59702 🟠 Łataj w tym tygodniu

repomix contains a server-side request forgery vulnerability in the POST /api/pack endpoint that allows unauthenticated attackers to make arbitrary outbound requests. The endpoint fails to properly validate http://, http…

9.3 CVSS
0.3% EPSS
ssrf 2026-07-08
CVE-2026-67426 🟠 Łataj w tym tygodniu

Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, the standalone flyto-verification service in src/core/verification_service.py exposes unauthenticated POST /run on 0.0.0.0:8344 a…

9.3 CVSS
0.3% EPSS
ssrf 2026-07-29
CVE-2026-32096 🟠 Łataj w tym tygodniu

Plunk is an open-source email platform built on top of AWS SES. Prior to 0.7.0, a Server-Side Request Forgery (SSRF) vulnerability existed in the SNS webhook handler. An unauthenticated attacker could send a crafted requ…

9.3 CVSS
0.1% EPSS
useplunkssrf 2026-03-11
CVE-2026-32301 🔴 Łataj teraz

Centrifugo is an open-source scalable real-time messaging server. Prior to 6.7.0, Centrifugo is vulnerable to Server-Side Request Forgery (SSRF) when configured with a dynamic JWKS endpoint URL using template variables (…

9.3 CVSS
0.1% EPSS
CVE-2026-32210 🟠 Łataj w tym tygodniu
appscloud

Server-side request forgery (ssrf) in Microsoft Dynamics 365 (Online) allows an unauthorized attacker to perform spoofing over a network.

9.3 CVSS
0.1% EPSS
microsoftssrf 2026-04-23
CVE-2026-33502 🔴 Łataj teraz

WWBN AVideo is an open source video platform. In versions up to and including 26.0, an unauthenticated server-side request forgery vulnerability in `plugin/Live/test.php` allows any remote user to make the AVideo server …

9.3 CVSS
0.0% EPSS
wwbnexploitssrf 2026-03-23
CVE-2023-27162 🔴 Łataj teraz

openapi-generator up to v6.4.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/gen/clients/{language}. This vulnerability allows attackers to access network resources and sensitive i…

9.1 CVSS
0.9% EPSS
CVE-2024-25864 🟠 Łataj w tym tygodniu

Server Side Request Forgery (SSRF) vulnerability in Friendica versions after v.2023.12, allows a remote attacker to execute arbitrary code and obtain sensitive information via the fpostit.php component.

9.1 CVSS
0.9% EPSS
ssrf 2024-04-03
CVE-2024-25294 🟠 Łataj w tym tygodniu

An SSRF issue in REBUILD v.3.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the FileDownloader.java, proxyDownload,URL parameters.

9.1 CVSS
0.8% EPSS
getrebuildssrf 2024-03-20
CVE-2022-40842 🔴 Łataj teraz

ndk design NdkAdvancedCustomizationFields 3.5.0 is vulnerable to Server-side request forgery (SSRF) via rotateimg.php.

9.1 CVSS
0.8% EPSS
CVE-2021-21009 🟡 Monitoruj

Adobe Campaign Classic Gold Standard 10 (and earlier), 20.3.1 (and earlier), 20.2.3 (and earlier), 20.1.3 (and earlier), 19.2.3 (and earlier) and 19.1.7 (and earlier) are affected by a server-side request forgery (SSRF) …

8.6 CVSS
3.2% EPSS
adobessrf 2021-01-13
CVE-2026-24400 🟠 Łataj w tym tygodniu

AssertJ provides Fluent testing assertions for Java and the Java Virtual Machine (JVM). Starting in version 1.4.0 and prior to version 3.27.7, an XML External Entity (XXE) vulnerability exists in `org.assertj.core.util.x…

9.1 CVSS
0.5% EPSS
assertjdosssrfxxe 2026-01-26
CVE-2026-40682 🟠 Łataj w tym tygodniu
apps

XML External Entity (XXE) via Unsanitized Dictionary Parsing in Apache OpenNLP DictionaryEntryPersistor Versions Affected: before 2.5.9, before 3.0.0-M3 Description: The DictionaryEntryPersistor class initializes a s…

9.1 CVSS
0.5% EPSS
apachessrfxxe 2026-05-04
CVE-2026-24736 🔴 Łataj teraz

Squidex is an open source headless content management system and content management hub. Versions of the application up to and including 7.21.0 allow users to define "Webhooks" as actions within the Rules engine. The url…

9.1 CVSS
0.4% EPSS
CVE-2026-42281 🟠 Łataj w tym tygodniu

MagicMirror² is an open source modular smart mirror platform. Prior to 2.36.0, an unauthenticated Server-Side Request Forgery (SSRF) vulnerability in the /cors endpoint allows any remote attacker to force the MagicMirror…

8.6 CVSS
2.9% EPSS
CVE-2026-0258 🟠 Łataj w tym tygodniu
network

A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destin…

9.1 CVSS
0.3% EPSS
CVE-2026-55471 🔴 Łataj teraz

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.10, org.hl7.fhir.utilities.XsltUtilities saxonTransform(...) overloads instantiated a bare net.sf.saxo…

9.1 CVSS
0.3% EPSS
CVE-2024-31461 🟠 Łataj w tym tygodniu

Plane, an open-source project management tool, has a Server-Side Request Forgery (SSRF) vulnerability in versions prior to 0.17-dev. This issue may allow an attacker to send arbitrary requests from the server hosting the…

9.1 CVSS
0.3% EPSS
ssrf 2024-04-10
CVE-2026-48814 🟠 Łataj w tym tygodniu

Network-AI is a TypeScript/Node.js multi-agent orchestrator. In versions 5.7.1 and earlier, the MCP SSE server allows unauthenticated cross-origin MCP tool invocation due to an empty default secret. This issue was partia…

9.1 CVSS
0.3% EPSS
ssrf 2026-06-17
CVE-2026-44313 🟠 Łataj w tym tygodniu

Linkwarden is a self-hosted, open-source collaborative bookmark manager to collect, organize and archive webpages. Prior to version 2.13.0, a Server-Side Request Forgery (SSRF) vulnerability in the fetchTitleAndHeaders f…

9.1 CVSS
0.3% EPSS
ssrf 2026-05-09
CVE-2026-58122 🟠 Łataj w tym tygodniu

Hermes WebUI before 0.51.307 contains an authentication bypass vulnerability that allows unauthenticated remote attackers to circumvent local-origin IP restrictions on onboarding endpoints by supplying a spoofed X-Forwar…

9.1 CVSS
0.3% EPSS
auth-bypassssrf 2026-07-09
CVE-2026-35459 🔴 Łataj teraz

pyLoad is a free and open-source download manager written in Python. In 0.5.0b3.dev96 and earlier, pyLoad has a server-side request forgery (SSRF) vulnerability. The fix for CVE-2026-33992 added IP validation to BaseDown…

9.1 CVSS
0.3% EPSS
CVE-2026-58508 🟠 Łataj w tym tygodniu

Two SSRF vulnerabilities in Gitea migration/mirror (DNS rebinding + missing re-validation)

9.1 CVSS
0.3% EPSS
ssrf 2026-08-13
CVE-2023-46945 🟠 Łataj w tym tygodniu

QD 20230821 is vulnerable to Server-side request forgery (SSRF) via a crafted request

9.1 CVSS
0.2% EPSS
qd-todayssrf 2026-04-08
CVE-2026-31017 🟠 Łataj w tym tygodniu

A Server-Side Request Forgery (SSRF) vulnerability exists in the Print Format functionality of ERPNext v16.0.1 and Frappe Framework v16.1.1, where user-supplied HTML is insufficiently sanitized before being rendered into…

9.1 CVSS
0.2% EPSS
frappessrf 2026-04-08
CVE-2026-50887 🟠 Łataj w tym tygodniu

A Server-Side Request Forgery (SSRF) in the automatic short URL title resolution component of shlink v5.0.1 allows attackers to scan internal resources via supplying a crafted longUrl.

9.1 CVSS
0.1% EPSS
ssrf 2026-06-15
CVE-2026-33024 🟠 Łataj w tym tygodniu

AVideo is a video-sharing Platform. Versions prior to 8.0 contain a Server-Side Request Forgery vulnerability (CWE-918) in the public thumbnail endpoints getImage.php and getImageMP4.php. Both endpoints accept a base64Ur…

9.1 CVSS
0.1% EPSS
wwbnssrf 2026-03-20
CVE-2026-33351 🔴 Łataj teraz

WWBN AVideo is an open source video platform. Prior to version 26.0, a Server-Side Request Forgery (SSRF) vulnerability exists in `plugin/Live/standAloneFiles/saveDVR.json.php`. When the AVideo Live plugin is deployed in…

9.1 CVSS
0.1% EPSS
wwbnexploitssrf 2026-03-23
CVE-2026-33407 🔴 Łataj teraz

Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 4.7.0, Wallos endpoints/logos/search.php accepts HTTP_PROXY and HTTPS_PROXY environment variables without validation, enabling SSRF …

9.1 CVSS
0.0% EPSS
CVE-2026-44694 🟠 Łataj w tym tygodniu

n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. From version 2.18.7 to before version 2.50.2, there is an authenticated server-side request forgery vulne…

9.1 CVSS
0.0% EPSS
n8n-mcpssrf 2026-05-08
CVE-2026-33990 🟠 Łataj w tym tygodniu
dev

Docker Model Runner (DMR) is software used to manage, run, and deploy AI models using Docker. Prior to version 1.1.25, Docker Model Runner contains an SSRF vulnerability in its OCI registry token exchange flow. When pull…

9.1 CVSS
0.0% EPSS
dockerssrf 2026-04-01
CVE-2025-50228 🟠 Łataj w tym tygodniu

Jizhicms v2.5.4 is vulnerable to Server-Side Request Forgery (SSRF) in User Evaluation, Message, and Comment modules.

9.1 CVSS
0.0% EPSS
jizhicmsssrf 2026-04-09
CVE-2025-55853 🔴 Łataj teraz

SoftVision webPDF before 10.0.2 is vulnerable to Server-Side Request Forgery (SSRF). The PDF converter function does not check if internal or external resources are requested in the uploaded files and allows for protocol…

9.1 CVSS
0.0% EPSS
CVE-2026-45502 ⚪ Do wiadomości
appscloud

Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to disclose information over a network.

5.0 CVSS
20.3% EPSS
microsoftssrf 2026-06-09
CVE-2026-45504 🟡 Monitoruj
appscloud

Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.

8.8 CVSS
0.9% EPSS
microsoftssrf 2026-06-09
CVE-2022-27245 🟡 Monitoruj

An issue was discovered in MISP before 2.4.156. app/Model/Server.php does not restrict generateServerSettings to the CLI. This could lead to SSRF.

8.8 CVSS
0.9% EPSS
misp-projectssrf 2022-03-18
CVE-2026-50112 🟡 Monitoruj

SSRF via Metalink Mirror URL Resolution: An authenticated tenant can register a template pointing to an attacker-controlled metalink file containing internal targets. The Secondary Storage VM will retrieve the data and …

8.8 CVSS
0.4% EPSS
rcessrf 2026-08-21
CVE-2026-17123 🟡 Monitoruj

The Royal Elementor Addons plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 1.7.1064 via the Form Builder widget's 'webhook_url' setting. The widget's render() method pe…

8.8 CVSS
0.4% EPSS
ssrf 2026-08-16
CVE-2026-71235 🟡 Monitoruj

Magistrala's Rules Engine allows authenticated users to create rules with embedded Go or Lua scripts executed server-side when IoT messages arrive. The Lua script engine (re/lua.go) performs no input validation at all an…

8.8 CVSS
0.3% EPSS
ssrf 2026-08-05
CVE-2026-45717 🟡 Monitoruj

Budibase is an open-source low-code platform. Prior to 3.38.1, Budibase exposes a REST API for datasource management. The route PUT /api/datasources/:datasourceId is registered in the authorizedRoutes group with TABLE/RE…

8.8 CVSS
0.0% EPSS
ssrf 2026-05-27
CVE-2026-30810 🟡 Monitoruj

Server-Side Request Forgery vulnerability allows Privilege Escalation via API Checker extension. This issue affects Pandora FMS: from 777 through 800

8.8 CVSS
0.0% EPSS
CVE-2026-52805 🟡 Monitoruj

Gogs is an open source self-hosted Git service. Prior to 0.14.3, a Server-Side Request Forgery (SSRF) vulnerability exists in the repository migration functionality. The application validates only the initially submitted…

8.7 CVSS
0.4% EPSS
ssrf 2026-06-24
CVE-2026-48285 🟡 Monitoruj

ColdFusion versions 2025.9, 2023.20 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass s…

8.6 CVSS
0.8% EPSS
adobessrf 2026-06-30
CVE-2026-49478 🟡 Monitoruj

Fulcio is a certificate authority for issuing code signing certificates for an OpenID Connect (OIDC) identity. Versions through 1.8.5 improperly follow cross-host redirects and attach Kubernetes ServiceAccount tokens dur…

8.7 CVSS
0.3% EPSS
ssrf 2026-08-13
CVE-2026-25580 🟠 Łataj w tym tygodniu

Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. From 0.0.26 to before 1.56.0, aServer-Side Request Forgery (SSRF) vulnerability exists in Pydantic AI's URL download fun…

8.6 CVSS
0.6% EPSS
pydanticexploitssrf 2026-02-06
CVE-2026-11974 🟡 Monitoruj

The wp-media-folder-addon WordPress plugin before 4.1.7 does not validate a user-supplied parameter before using it in a file read operation in two AJAX actions available to unauthenticated users, leading to Arbitrary Fi…

8.6 CVSS
0.5% EPSS
ssrf 2026-07-29
CVE-2026-34577 🟠 Łataj w tym tygodniu

Postiz is an AI social media scheduling tool. Prior to version 2.21.3, the GET /public/stream endpoint in PublicController accepts a user-supplied url query parameter and proxies the full HTTP response back to the caller…

8.6 CVSS
0.5% EPSS
gitroomexploitssrf 2026-04-02
CVE-2026-0532 🟡 Monitoruj

External Control of File Name or Path (CWE-73) combined with Server-Side Request Forgery (CWE-918) can allow an attacker to cause arbitrary file disclosure through a specially crafted credentials JSON payload in the Goog…

8.6 CVSS
0.4% EPSS
ssrf 2026-01-14
CVE-2026-32857 🟡 Monitoruj

Firecrawl version 2.8.0 and prior contain a server-side request forgery (SSRF) protection bypass vulnerability in the Playwright scraping service where network policy validation is applied only to the initial user-suppli…

8.6 CVSS
0.4% EPSS
ssrf 2026-03-26
CVE-2025-59088 🟡 Monitoruj

If kdcproxy receives a request for a realm which does not have server addresses defined in its configuration, by default, it will query SRV records in the DNS zone matching the requested realm name. This creates a server…

8.6 CVSS
0.4% EPSS
ssrf 2025-11-12
CVE-2016-6621 🟡 Monitoruj

The setup script for phpMyAdmin before 4.0.10.19, 4.4.x before 4.4.15.10, and 4.6.x before 4.6.6 allows remote attackers to conduct server-side request forgery (SSRF) attacks via unspecified vectors.

8.6 CVSS
0.4% EPSS
phpmyadminssrf 2017-01-31
CVE-2026-67201 🟡 Monitoruj

V through 0.5.2, fixed in commit 85859f0, contains a server-side request forgery (SSRF) bypass vulnerability that allows attackers to circumvent host-based allowlists by exploiting a parser differential between net.urlli…

8.6 CVSS
0.4% EPSS
ssrf 2026-07-29
CVE-2026-56261 🟡 Monitoruj

Crawl4AI before 0.8.7 contains a server-side request forgery (SSRF) vulnerability in the Docker API server's /crawl/job and /llm/job endpoints, which accept webhook URLs without destination validation. An attacker can su…

8.6 CVSS
0.4% EPSS
kidocodessrf 2026-07-10
CVE-2026-63088 🟡 Monitoruj

stoatchat before 0.14.0 contains a server-side request forgery (SSRF) vulnerability that allows unauthenticated network-accessible attackers to bypass the DNS-based IP blocklist by exploiting incomplete address validatio…

8.6 CVSS
0.4% EPSS
ssrf 2026-07-16
CVE-2026-53727 🟠 Łataj w tym tygodniu

css_parser is a Ruby CSS parser. From 2.2.0 until 3.0.0, CssParser::Parser#read_remote_file in lib/css_parser/parser.rb, and therefore load_uri! and the @import-following branch of add_block!, issued HTTP and HTTPS reque…

8.6 CVSS
0.4% EPSS
CVE-2026-59707 🟡 Monitoruj

LocalAI contains an unauthenticated server-side request forgery vulnerability in the POST /models/apply endpoint that allows attackers to fetch arbitrary internal URLs. The endpoint passes unsanitized gallery URL fields …

8.6 CVSS
0.4% EPSS
ssrf 2026-07-07
CVE-2026-63086 🟡 Monitoruj

text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compatible multimodal chat completions endpoint that allows unauthenticated network attackers to coerce th…

8.6 CVSS
0.3% EPSS
ssrf 2026-07-16
CVE-2026-67425 🟡 Monitoruj

Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.6, llm.chat reads provider keys such as OPENAI_API_KEY and ANTHROPIC_API_KEY from the environment and sends them in the Authorizatio…

8.6 CVSS
0.3% EPSS
ssrf 2026-07-29
CVE-2026-53983 🟡 Monitoruj

Ground Station prior to 0.6.0 contains an unauthenticated blind server-side request forgery vulnerability in the orbital-source configuration path that allows any unauthenticated Socket.IO client to cause the ground-stat…

8.6 CVSS
0.3% EPSS
ssrf 2026-08-06
CVE-2026-60105 🟡 Monitoruj

Monsta FTP before 2.14.5 contains a server-side request forgery vulnerability in the fetchRemoteFile action caused by an incomplete IP blocklist check in the isBlockedIP() function, which fails to detect embedded IPv4 ad…

8.6 CVSS
0.3% EPSS
ssrf 2026-07-08
CVE-2026-15583 🟡 Monitoruj

A confused-deputy flaw in Grafana MCP Server allows an unauthenticated remote attacker to exfiltrate the server's environment-configured Grafana service-account token by supplying a crafted X-Grafana-URL request header. …

8.6 CVSS
0.3% EPSS
ssrf 2026-07-15
CVE-2026-63764 🟠 Łataj w tym tygodniu

LMDeploy through 0.14.0, fixed in commit 03c3130, contains a server-side request forgery (SSRF) vulnerability in the _load_http_url function within the connection.py media handler, where the private-IP guard validates on…

8.6 CVSS
0.3% EPSS
internlmexploitssrf 2026-07-21
CVE-2026-71270 🟡 Monitoruj

Stirling-PDF's POST /api/v1/convert/url/pdf endpoint (ConvertWebsiteToPDF.java) was not updated with the CustomHtmlSanitizer/SsrfProtectionService SSRF protections that were added to three sibling conversion endpoints (h…

8.6 CVSS
0.3% EPSS
ssrf 2026-08-05
CVE-2026-53755 🟡 Monitoruj

Crawl4AI is an open-source LLM friendly web crawler & scraper. Prior to 0.8.9, the Docker API server applied its SSRF destination check to the crawl target URL only, not to the proxy address. An unauthenticated request c…

8.6 CVSS
0.3% EPSS
kidocodessrf 2026-06-23
CVE-2026-44023 🟡 Monitoruj

Docling Core defines core data types and transformations for the document processing application Docling. In versions 1.5.0 and above, prior to 2.74.1, docling-core did not sufficiently restrict remote request destinatio…

8.6 CVSS
0.3% EPSS
doclingssrf 2026-07-16
CVE-2026-56266 🟡 Monitoruj

Crawl4AI before 0.8.7 contains a server-side request forgery vulnerability in the /crawl, /crawl/stream, /md, and /llm endpoints that fetch arbitrary user-supplied URLs without validation. Unauthenticated attackers can b…

8.6 CVSS
0.3% EPSS
kidocodessrf 2026-06-22
CVE-2026-62242 🟡 Monitoruj

Spring Boot Admin Server before 4.1.2 contains a server-side request forgery vulnerability that allows unauthenticated attackers to register instances with attacker-controlled healthUrl and managementUrl parameters witho…

8.6 CVSS
0.3% EPSS
ssrf 2026-07-13
CVE-2026-50131 🟡 Monitoruj

Fedify is a TypeScript library for building federated server apps powered by ActivityPub. Fedify previously addressed SSRF/internal network access in GHSA-p9cg-vqcc-grcx by adding public URL validation before runtime doc…

8.6 CVSS
0.3% EPSS
ssrf 2026-06-10
CVE-2025-4123 🟡 Monitoruj

A cross-site scripting (XSS) vulnerability exists in Grafana caused by combining a client path traversal and open redirect. This allows attackers to redirect users to a website that hosts a frontend plugin that will exec…

7.6 CVSS
5.3% EPSS
CVE-2026-63306 🟡 Monitoruj

stoatchat before 0.13.5 contains an unauthenticated server-side request forgery vulnerability in the /proxy and /embed endpoints that accept arbitrary URLs without DNS resolution filtering or private IP range validation.…

8.6 CVSS
0.2% EPSS
ssrf 2026-07-16
CVE-2026-26138 🟡 Monitoruj
appscloud

Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network.

8.6 CVSS
0.1% EPSS
microsoftssrf 2026-03-19
CVE-2026-26139 🟡 Monitoruj
appscloud

Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network.

8.6 CVSS
0.1% EPSS
microsoftssrf 2026-03-19
CVE-2026-26150 🟡 Monitoruj
appscloud

Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network.

8.6 CVSS
0.1% EPSS
microsoftssrf 2026-04-23
CVE-2025-5260 🟡 Monitoruj

Server-Side Request Forgery (SSRF) vulnerability in Pik Online Yazılım Çözümleri A.Ş. Pik Online allows Server Side Request Forgery. This issue affects Pik Online: before 3.1.5.

8.6 CVSS
0.1% EPSS
ssrf 2025-08-20
CVE-2026-22742 🟡 Monitoruj
cloud

Spring AI's spring-ai-bedrock-converse contains a Server-Side Request Forgery (SSRF) vulnerability in BedrockProxyChatModel when processing multimodal messages that include user-supplied media URLs. Insufficient validati…

8.6 CVSS
0.1% EPSS
vmwaressrf 2026-03-27
CVE-2026-42595 🟠 Łataj w tym tygodniu

Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0, Gotenberg's Chromium URL-to-PDF endpoint (/forms/chromium/convert/url) has no default protection against HTTP/HTTPS-based SSRF. The default deny…

8.6 CVSS
0.1% EPSS
CVE-2026-34160 🟡 Monitoruj

Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, the PENS (Package Exchange Notification Services) plugin endpoint at public/plugin/Pens/pens.php is accessible without authentica…

8.6 CVSS
0.1% EPSS
ssrf 2026-04-14
CVE-2026-3511 🟡 Monitoruj

Improper Restriction of XML External Entity Reference vulnerability in XMLUtils.java in Slovensko.Digital Autogram allows remote unauthenticated attacker to conduct SSRF (Server Side Request Forgery) attacks and obtain u…

8.6 CVSS
0.0% EPSS
ssrfxxe 2026-03-19
CVE-2026-44116 🟡 Monitoruj

OpenClaw before 2026.4.22 contains a server-side request forgery vulnerability in the Zalo plugin's sendPhoto function that fails to validate outbound photo URLs through the SSRF guard. Attackers can bypass SSRF protecti…

8.6 CVSS
0.0% EPSS
openclawssrf 2026-05-06
CVE-2026-22219 🟡 Monitoruj

Chainlit versions prior to 2.9.4 contain a server-side request forgery (SSRF) vulnerability in the /project/element update flow when configured with the SQLAlchemy data layer backend. An authenticated client can provide …

7.7 CVSS
4.4% EPSS
chainlitexploitssrf 2026-01-20
CVE-2026-12975 🟡 Monitoruj
os

A flaw was found in Apicurio Registry. The ContentTypeUtil.isParsableXml() method creates a SAXParserFactory without enabling secure processing features or disabling external entity resolution. An attacker with artifact-…

8.5 CVSS
0.4% EPSS
redhatdosssrf 2026-06-25
CVE-2026-56167 🟡 Monitoruj

Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.

8.5 CVSS
0.4% EPSS
ssrf 2026-07-24
CVE-2020-22983 🟡 Monitoruj

A Server-Side Request Forgery (SSRF) vulnerability exists in MicroStrategy Web SDK 11.1 and earlier, allows remote unauthenticated attackers to conduct a server-side request forgery (SSRF) attack via the srcURL parameter…

8.1 CVSS
2.4% EPSS
microstrategyssrf 2022-05-13
CVE-2026-67428 🟡 Monitoruj

Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, HTTP-emitting modules including src/core/modules/third_party/developer/http/requests.py, core.api.http_get, core.api.http_post, g…

8.5 CVSS
0.3% EPSS
ssrf 2026-07-29
CVE-2026-69543 🟡 Monitoruj

Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a network.

8.5 CVSS
0.3% EPSS
ssrf 2026-08-20
CVE-2026-3515 🟡 Monitoruj

A vulnerability in the `GitHubRepository` block of the `prefect-github` integration in Prefect version 3.6.18 allows an attacker to inject arbitrary git command-line options via the `reference` field. The `reference` fie…

8.5 CVSS
0.3% EPSS
rcessrf 2026-05-24
CVE-2026-57862 🟡 Monitoruj

Kanboard 1.2.52 and prior contains a server-side request forgery vulnerability that allows authenticated users to bypass SSRF protections by supplying hexadecimal IP address notation in user-controlled URLs. Attackers ca…

8.5 CVSS
0.3% EPSS
ssrf 2026-07-30
CVE-2026-17617 🟡 Monitoruj

IBM Application Gateway Operator 22.2 through 26.06 is vulnerable to Server-Side Request Forgery (SSRF) due to insufficient validation of URLs specified in custom resources.

8.5 CVSS
0.3% EPSS
ibmssrf 2026-08-05
CVE-2026-66415 🟡 Monitoruj

Leantime 3.6.2 contains a server-side request forgery and local file inclusion vulnerability that allows authenticated attackers to read internal resources by passing unsanitized user-supplied filenames to file_get_conte…

8.5 CVSS
0.3% EPSS
CVE-2026-41455 🟡 Monitoruj

WeKan before 8.35 contains a server-side request forgery vulnerability in webhook integration URL handling where the URL scheme field accepts any string without protocol restriction or destination validation. Attackers w…

8.5 CVSS
0.2% EPSS
ssrf 2026-04-22
CVE-2026-56663 🟡 Monitoruj

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.52, an authenticated user can bypass the SSRF / private-IP protections in SendWebReq…

8.5 CVSS
0.2% EPSS
ssrf 2026-06-26
CVE-2026-61429 🟡 Monitoruj

PraisonAI versions before 1.6.78 contain a server-side request forgery vulnerability in the Crawl4AI/Chromium backend that allows attackers to bypass SSRF validation by exploiting DNS rebinding and HTTP redirects. Attack…

8.5 CVSS
0.2% EPSS
ssrf 2026-07-11
CVE-2026-18359 🟡 Monitoruj

Server-side request forgery in the METS and IIIF import URI handling in Scripta eScriptorium through 26.04.1 allows a remote authenticated user to make the server issue arbitrary HTTP requests to internal hosts, includin…

8.5 CVSS
0.2% EPSS
escriptoriumssrf 2026-08-06
CVE-2026-11714 🟡 Monitoruj

IBM WebSphere Application Server Liberty is affected by a server-side request forgery vulnerability with the apiDiscovery-1.0 feature enabled.

8.5 CVSS
0.2% EPSS
ibmssrf 2026-06-30
CVE-2026-61430 🟡 Monitoruj

PraisonAI before 1.6.78 contains a server-side request forgery vulnerability in the web_crawl tool that validates hostnames at check time but re-resolves them at connection time without IP pinning. Attackers can use DNS …

8.5 CVSS
0.2% EPSS
ssrf 2026-07-15
CVE-2026-9203 🟡 Monitoruj

A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with low-privileged roles to bypass protections for cloud instance metadata endpoints. Succes…

8.5 CVSS
0.2% EPSS
ssrf 2026-08-05
CVE-2023-1895 🟡 Monitoruj

The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Server Side Request Forgery via the get_remote_content REST API endpoint in versions up to, and including, 1.8.3. This can allow authenticated attackers…

8.5 CVSS
0.2% EPSS
motopressssrf 2023-06-09
CVE-2026-56771 🟡 Monitoruj

NewsBlur before version 14.5.0 contains a server-side request forgery vulnerability in the add_url endpoint that allows authenticated users to make arbitrary server requests to internal networks by failing to filter priv…

8.5 CVSS
0.2% EPSS
ssrf 2026-06-25
CVE-2026-54353 🟠 Łataj w tym tygodniu

Budibase is an open-source low-code platform. Prior to 3.39.9, authenticated users with automation permissions can bypass Budibase's SSRF blacklist through DNS rebinding. The outbound fetch flow validates a hostname agai…

8.5 CVSS
0.2% EPSS
budibaseexploitssrf 2026-06-26
CVE-2026-10129 🟡 Monitoruj

IBM Langflow OSS 1.0.0 through 1.9.3 contains a Server-Side Request Forgery (SSRF) protection bypass vulnerability in the API Request component. An authenticated attacker with low-level privileges (flow author role) can …

8.5 CVSS
0.2% EPSS
langflowssrf 2026-06-30
CVE-2026-18597 🟡 Monitoruj

The PDF creation feature of Foxit PDF Services API supports referencing external files. Although local file access is restricted, an attacker could trigger an SSRF vulnerability by using URL redirection to bypass validat…

8.5 CVSS
0.2% EPSS
ssrf 2026-08-06
CVE-2026-73629 🟡 Monitoruj

Serendipity before 2.6.0 contains a server-side request forgery vulnerability in the serendipity_url_allowed() filter that fails to block hex-encoded IPv4 addresses, IPv6 literals, and link-local ranges. Authenticated us…

8.5 CVSS
0.2% EPSS
ssrf 2026-08-13
CVE-2023-3958 🟡 Monitoruj

The WP Remote Users Sync plugin for WordPress is vulnerable to Server Side Request Forgery via the 'notify_ping_remote' AJAX function in versions up to, and including, 1.2.12. This can allow authenticated attackers with …

8.5 CVSS
0.2% EPSS
frogerssrf 2023-08-16
CVE-2026-41461 🟡 Monitoruj

SocialEngine versions 7.8.0 and prior contain a blind server-side request forgery vulnerability in the /core/link/preview endpoint where user-supplied input passed via the uri request parameter is not sanitized before be…

8.5 CVSS
0.0% EPSS
socialenginessrf 2026-04-23
CVE-2026-42449 🟡 Monitoruj

n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. In versions 2.47.4 through 2.47.13, the SDK embedder path (N8NDocumentationMCPServer constructor, getN8nA…

8.5 CVSS
0.0% EPSS
n8n-mcpssrf 2026-05-07
CVE-2026-31943 🟠 Łataj w tym tygodniu

LibreChat is a ChatGPT clone with additional features. Prior to version 0.8.3, `isPrivateIP()` in `packages/api/src/auth/domain.ts` fails to detect IPv4-mapped IPv6 addresses in their hex-normalized form, allowing any au…

8.5 CVSS
0.0% EPSS
CVE-2026-39974 🟡 Monitoruj

n8n-MCP is a Model Context Protocol (MCP) server that provides AI assistants with comprehensive access to n8n node documentation, properties, and operations. Prior to 2.47.4, an authenticated Server-Side Request Forgery …

8.5 CVSS
0.0% EPSS
n8n-mcpssrf 2026-04-09
CVE-2026-38527 🟡 Monitoruj

A Server-Side Request Forgery (SSRF) in the /settings/webhooks/create component of Webkul Krayin CRM v2.2.x allows attackers to scan internal resources via supplying a crafted POST request.

8.5 CVSS
0.0% EPSS
ssrf 2026-04-14
CVE-2026-41914 🟡 Monitoruj

OpenClaw before 2026.4.8 contains a server-side request forgery vulnerability in QQ Bot media download paths that bypass SSRF protection. Attackers can exploit unprotected media fetch endpoints to access internal resourc…

8.5 CVSS
0.0% EPSS
openclawssrf 2026-04-28
CVE-2026-42439 🟡 Monitoruj

OpenClaw before 2026.4.10 contains a server-side request forgery policy bypass vulnerability in the browser tabs action select and close routes. Attackers can bypass configured browser SSRF policy protections by exploiti…

8.5 CVSS
0.0% EPSS
openclawssrf 2026-05-05
CVE-2026-35548 🟡 Monitoruj

An issue was discovered in guardsix (formerly Logpoint) ODBC Enrichment Plugins before 5.2.1 (5.2.1 is used in guardsix 7.9.0.0). A logic flaw allowed stored database credentials to be reused after modification of the ta…

8.5 CVSS
0.0% EPSS
guardsixssrf 2026-04-22
CVE-2026-44015 🟠 Łataj w tym tygodniu

Nginx UI is a web user interface for the Nginx web server. In 2.3.4 and earlier, an authenticated user can perform Server-Side Request Forgery (SSRF) by creating a cluster node pointing to an arbitrary internal URL and t…

8.5 CVSS
0.0% EPSS
nginxuiexploitssrf 2026-05-12
CVE-2026-45400 🟠 Łataj w tym tygodniu

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.5, a parsing difference between the urlparse and requests libraries led to an SSRF bypass vulnerability. Thi…

8.5 CVSS
0.0% EPSS
CVE-2026-44797 🟡 Monitoruj

Nautobot is a Network Source of Truth and Network Automation Platform. Prior to 2.4.33 and 3.1.2, Nautobot's Webhook data model and associated feature set could be configured by users with sufficient access to perform re…

8.5 CVSS
0.0% EPSS
networktocodessrf 2026-05-28
CVE-2026-49120 🟡 Monitoruj

Medplum before 5.1.14 contains a server-side request forgery vulnerability in the subscription worker that allows authenticated users to perform unauthorized internal network requests by creating FHIR Subscription resour…

8.5 CVSS
0.0% EPSS
ssrf 2026-06-02
CVE-2026-57947 🟡 Monitoruj

Pinpoint through 3.1.0 contains a server-side request forgery vulnerability in the webhook registration endpoint that allows authenticated users to register internal URLs due to missing SSRF protection. Attackers can tri…

8.5 CVSS
0.0% EPSS
ssrf 2026-06-29
CVE-2026-57955 🟡 Monitoruj

SigNoz through 0.130.1 contains a SQL injection vulnerability that allows authenticated attackers to execute arbitrary ClickHouse queries by injecting URL-encoded quotes into the rule ID path parameter of the alert-histo…

8.5 CVSS
0.0% EPSS
sql-injectionssrf 2026-06-29
CVE-2026-14980 🟡 Monitoruj

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery which could allow an attacker to perform SSRF attacks with elevated privileges when the collectiveControlle…

8.3 CVSS
0.2% EPSS
ibmssrf 2026-07-30
CVE-2026-34504 🟡 Monitoruj

OpenClaw before 2026.3.28 contains a server-side request forgery vulnerability in the fal provider image-generation-provider.ts component that allows attackers to fetch internal URLs. A malicious or compromised fal relay…

8.3 CVSS
0.2% EPSS
openclawssrf 2026-03-31
CVE-2022-40700 🟡 Monitoruj

Server-Side Request Forgery (SSRF) vulnerability in Montonio Montonio for WooCommerce, Wpopal Wpopal Core Features, AMO for WP – Membership Management ArcStone wp-amo, Long Watch Studio WooVirtualWallet – A virtual walle…

8.2 CVSS
0.7% EPSS
longwatchstudiossrf 2024-01-19
CVE-2026-40516 🟠 Łataj w tym tygodniu

OpenHarness before commit bd4df81 contains a server-side request forgery vulnerability in the web_fetch and web_search tools that allows attackers to access private and localhost HTTP services by manipulating tool parame…

8.3 CVSS
0.2% EPSS
hkudsexploitssrf 2026-04-17
CVE-2026-28476 🟡 Monitoruj

OpenClaw versions prior to 2026.2.14 contain a server-side request forgery vulnerability in the optional Tlon Urbit extension that accepts user-provided base URLs for authentication without proper validation. Attackers w…

8.3 CVSS
0.1% EPSS
openclawssrf 2026-03-05
CVE-2024-21527 🟡 Monitoruj

Versions of the package github.com/gotenberg/gotenberg/v8/pkg/gotenberg before 8.1.0; versions of the package github.com/gotenberg/gotenberg/v8/pkg/modules/chromium before 8.1.0; versions of the package github.com/gotenb…

8.2 CVSS
0.6% EPSS
lfissrf 2024-07-19
CVE-2026-1313 🟡 Monitoruj

The MimeTypes Link Icons plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.2.20. This is due to the plugin making outbound HTTP requests to user-controlled URLs wit…

8.3 CVSS
0.0% EPSS
ssrf 2026-03-21
CVE-2026-47719 🟡 Monitoruj

FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the DEVICE_WEBAPI_REQUEST and DEVICE_PROPERTY Socket.IO handlers in server/runtime/index.js omit isSocketWriteAuthorized and accep…

8.2 CVSS
0.5% EPSS
ssrf 2026-08-18
CVE-2026-26337 🟡 Monitoruj

Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve both arbitrary file read and server-side request forgery through the absolute path traversal.

8.2 CVSS
0.4% EPSS
CVE-2026-44016 🟡 Monitoruj

Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. FIn versions >= 2.82.0, < 2.91.0, if the HTML backend was explicitly configured for rendering…

8.2 CVSS
0.3% EPSS
doclingrcessrf 2026-06-24
CVE-2026-65842 🟡 Monitoruj

Plate is a rich-text editor with AI and shadcn/ui. Prior to 53.3.2, @platejs/docx-io fetches remote image URLs while converting attacker-controlled HTML through htmlToDocxBlob in a server-side or privileged environment. …

8.2 CVSS
0.3% EPSS
ssrf 2026-08-20
CVE-2026-48764 🟡 Monitoruj

TypeBot is a chatbot builder tool. In versions prior to 3.17.2, SSRF validation is implemented by resolving a hostname once and checking whether the resolved IP belongs to a forbidden range allowing for DNS rebinding byp…

8.2 CVSS
0.3% EPSS
ssrf 2026-06-18
CVE-2026-43910 🟠 Łataj w tym tygodniu

Appium Java Client is the Java language binding for writing Appium tests that conform to the W3C WebDriver protocol. From 8.2.1 until 10.1.1, when directConnect(true) is enabled, AppiumCommandExecutor.setDirectConnect() …

8.2 CVSS
0.2% EPSS
appiumexploitssrf 2026-07-28
CVE-2026-54690 🟠 Łataj w tym tygodniu

datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Schema, GraphQL, Avro, Protobuf, and raw JSON, YAML, or CSV. From 0.9.1 until 0.61.0, datamodel-code-ge…

8.2 CVSS
0.2% EPSS
koxudaxiexploitssrf 2026-07-28
CVE-2026-54691 🟡 Monitoruj

datamodel-code-generator generates Python data models from schema definitions. From 0.9.1 until 0.61.0, src/datamodel_code_generator/http.py http.get_body accepts --url targets and redirect chain targets without host/IP …

8.2 CVSS
0.2% EPSS
ssrf 2026-07-28
CVE-2026-10564 🟡 Monitoruj

IBM Langflow OSS 1.0.0 through 1.9.6 contains a Server-Side Request Forgery (SSRF). The legacy RSSReaderComponent in rss.py and SearXNG component in searxng.py make unvalidated HTTP requests to user-controlled URLs, bypa…

8.2 CVSS
0.2% EPSS
langflowssrf 2026-06-30
CVE-2026-50168 🟡 Monitoruj

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 21.2.15, 20.3.22, and 19.2.23, an issue in the @angular/platform-s…

8.2 CVSS
0.2% EPSS
angularssrf 2026-06-22