Tag

#Server-Side Request Forgery

articleHIGH 7.7

Critical Server-Side Request Forgery Vulnerability in Tanium Enforce (CVE-2026-87084)

A server-side request forgery (SSRF) vulnerability, CVE-2026-87084, with a CVSS score of 7.7, was discovered in Tanium's Enforce product. This vulnerability allows attackers to make unauthorized requests on behalf of the server, potentially leading to confidentiality breaches. The vulnerability affects multiple versions of Enforce (2.9, 2.10, and 3.0) and has been addressed by Tanium in recent updates. Organizations are urged to apply patches immediately to mitigate potential risks.

1 source
blogHIGH 8.1

CVE-2026-86242: Unauthenticated Remote Code Execution in Bifrost HTTP Transport

CVE-2026-86242 is a high-severity vulnerability in Bifrost HTTP transport versions before 2.0.0. An unauthenticated attacker can exploit this vulnerability by sending a POST request to /api/plugins with a custom plugin path as an HTTP URL, leading to potential remote code execution or server-side request forgery. The vulnerability has a CVSS score of 8.1 and requires immediate attention.

1 source
blogHIGH 7.7

Understanding CVE-2026-47879: Arbitrary Spring Resource Locations in Spring Cloud Gateway

This educational analysis covers CVE-2026-47879, a high-severity vulnerability in Spring Cloud Gateway that allows arbitrary Spring Resource locations for defining the proto descriptor. The vulnerability affects multiple versions of Spring Cloud Gateway and has a CVSS score of 7.7. We will delve into the root cause, attack surface, exploitation mechanics, real-world impact, detection, and defense strategies.

1 source
newsHIGH 8.8

CVE-2026-17123: Royal Elementor Addons Plugin for WordPress Server-Side Request Forgery Vulnerability

The Royal Elementor Addons plugin for WordPress is vulnerable to Server-Side Request Forgery (SSRF) in versions up to and including 1.7.1064. An authenticated attacker with Contributor-level access and above can exploit this vulnerability to make web requests to arbitrary locations, potentially querying and modifying information from internal services. The CVSS score for this vulnerability is 8.8, indicating a high severity level.

1 source
articleHIGH 8.0

CVE-2026-12971: LearnPress WordPress Plugin SSRF Vulnerability

The LearnPress WordPress plugin before version 4.4.4 is vulnerable to a blind and bounded server-side request forgery (SSRF) attack. This vulnerability allows users with the instructor role to induce the server to issue requests to arbitrary external hosts. The vulnerability has not been actively exploited but poses a significant risk due to its potential for abuse. Organizations using affected versions of the LearnPress plugin should upgrade to version 4.4.4 or later immediately.

1 source
blogHIGH 8.2

Understanding and Defending Against CVE-2026-16268: Unauthenticated Request Forgery in Newsletters WordPress Plugin

CVE-2026-16268 is a vulnerability in the Newsletters WordPress plugin that allows unauthenticated attackers to make the site issue requests to arbitrary internal or external hosts. This vulnerability has a CVSS score of 8.2 and is classified as HIGH severity. It is not actively exploited in the wild. Understanding this vulnerability is crucial for defenders to protect their WordPress installations.

1 source
newsCRITICAL 10.0

Critical Server-Side Request Forgery Vulnerability in Microsoft Purview Data Governance (CVE-2026-57106)

A critical server-side request forgery (SSRF) vulnerability, CVE-2026-57106, with a CVSS score of 10, has been identified in Microsoft Purview Data Governance. This vulnerability allows an unauthorized attacker to elevate privileges over a network. Immediate action is required to mitigate this critical vulnerability.

1 source
articleHIGH 8.3

Next.js Server-Side Request Forgery Vulnerability in Rewrites via Attacker-Controlled Destination Hostname

A critical vulnerability (CVE-2026-64645) has been discovered in Next.js, a popular React-based framework for building server-rendered, statically generated, and performance-optimized web applications. This vulnerability allows for Server-Side Request Forgery (SSRF) in rewrites via attacker-controlled destination hostnames, with a CVSS score of 8.3. The vulnerability affects Next.js versions >= 12.0.0 and < 15.5.21, as well as versions >= 16.0.0 and < 16.2.11. Immediate patching or workarounds are recommended to prevent potential SSRF attacks.

1 source
blogHIGH 8.5

Understanding and Defending Against Server-Side Request Forgery (SSRF) in PraisonAI

This educational analysis covers CVE-2026-61430, a server-side request forgery (SSRF) vulnerability in PraisonAI versions before 1.6.78. The vulnerability allows attackers to bypass SSRF protection using DNS rebinding and retrieve internal HTTP response bodies from private or loopback services. We will delve into the root cause, attack surface, exploitation mechanics, real-world impact, detection strategies, and defensive recommendations.

1 source
articleHIGH 8.3

CVE-2026-2053: WSO2 API Manager WS-Addressing Header Manipulation Vulnerability

A critical vulnerability (CVE-2026-2053) in WSO2 API Manager's message flow component allows unauthenticated attackers to manipulate WS-Addressing headers, potentially leading to unauthorized access to internal network resources. The vulnerability has a CVSS score of 8.3 and is considered high severity. Affected versions include WSO2 API Manager 3.1.0 to 4.2.0. Immediate patching is recommended.

1 source