High severity7.1NVD Advisory· Published Sep 9, 2026· Updated Sep 9, 2026
CVE-2026-87821
CVE-2026-87821
Description
Lara Dashboard through 1.3.1 contains a server-side request forgery vulnerability in the POST /api/admin/builder/markdown/fetch endpoint that allows any authenticated user to fetch arbitrary URLs and read the response body. Attackers can read internal HTTP services and cloud metadata including IAM credentials by supplying malicious URLs without host validation or redirect restrictions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=1.3.1
Patches
Vulnerability mechanics
References
9- github.com/laradashboard/laradashboard/blob/v0.9.2/app/Services/Builder/MarkdownFetchService.phpnvd
- github.com/laradashboard/laradashboard/blob/v1.3.1/app/Http/Controllers/Api/Builder/MarkdownController.phpnvd
- github.com/laradashboard/laradashboard/blob/v1.3.1/app/Services/Builder/MarkdownFetchService.phpnvd
- github.com/laradashboard/laradashboard/blob/v1.3.2/app/Support/Security/SafeUrlValidator.phpnvd
- github.com/laradashboard/laradashboard/commit/738cc1a219ce459323ef1d09c3789075f1b8d2f2nvd
- github.com/laradashboard/laradashboard/releases/tag/v1.3.2nvd
- github.com/laradashboard/laradashboard/security/advisories/GHSA-4xqv-4c27-6c4jnvd
- github.com/laradashboard/laradashboard/security/advisories/GHSA-f36j-h77g-6wj8nvd
- www.vulncheck.com/advisories/lara-dashboard-0.9.2-through-1.3.1-server-side-request-forgery-in-builder-markdown-fetchnvd
News mentions
0No linked articles in our index yet.