Critical severity9.8NVD Advisory· Published Mar 20, 2020· Updated Jun 17, 2026
CVE-2019-11574
CVE-2019-11574
Description
An issue was discovered in Simple Machines Forum (SMF) before release 2.0.17. There is SSRF related to Subs-Package.php and Subs.php because user-supplied data is used directly in curl calls.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- SMF/Simple Machines Forumdescription
- Range: <2.0.17
- Range: <2.0.17
- cpe:2.3:a:simplemachines:simple_machine_forum:*:*:*:*:*:*:*:*Range: <2.0.17
Patches
Vulnerability mechanics
References
2- pastebin.com/raw/prE3iiLmnvdExploitThird Party Advisory
- www.simplemachines.org/community/index.phpnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.