Important severity7.4NVD Advisory· Published Sep 23, 2026
automation-controller-container: automation-controller: automation-controller: server-side request forgery via the Thycotic Secret Server external credential plugin test endpoint (caller-controlled server_url, backend executed in the controller web process)
CVE-2026-84644
Description
automation-controller-container: automation-controller: automation-controller: server-side request forgery via the Thycotic Secret Server external credential plugin test endpoint (caller-controlled server_url, backend executed in the controller web process)
Affected products
1Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.