VYPR

CWE-918

Server-Side Request Forgery (SSRF)

BaseIncomplete

Description

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-664

CVEs mapped to this weakness (3,681)

page 110 of 185
  • CVE-2025-5350MedOct 24, 2025
    risk 0.38cvss 5.9epss 0.01

    SSRF and Reflected XSS Vulnerabilities exist in multiple WSO2 products within the deprecated Try-It feature, which was accessible only to administrative users. This feature accepted user-supplied URLs without proper validation, leading to server-side request forgery (SSRF).…

  • CVE-2025-34230MedSep 29, 2025
    risk 0.38cvss 5.8epss 0.01

    Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 25.1.1413 (VA/SaaS deployments) contain a blind server-side request forgery (SSRF) vulnerability reachable via the /var/www/app/console_release/hp/log_off_single…

  • CVE-2025-34229MedSep 29, 2025
    risk 0.38cvss 5.8epss 0.01

    Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 25.1.1413 (VA/SaaS deployments) contain a blind server-side request forgery (SSRF) vulnerability reachable via the /var/www/app/console_release/hp/installApp.…

  • CVE-2025-59155MedSep 15, 2025
    risk 0.38cvss —epss 0.00

    hackmd-mcp is a Model Context Protocol server for integrating HackMD's note-taking platform with AI assistants. From 1.4.0 to before 1.5.0, hackmd-mcp contains a server-side request forgery (SSRF) vulnerability when the server is run in HTTP transport mode. Arbitrary…

  • CVE-2025-54590MedAug 1, 2025
    risk 0.38cvss —epss 0.01

    webfinger.js is a TypeScript-based WebFinger client that runs in both browsers and Node.js environments. In versions 2.8.0 and below, the lookup function accepts user addresses for account checking. However, the ActivityPub specification requires preventing access to localhost…

  • CVE-2025-24485MedJul 28, 2025
    risk 0.38cvss 5.8epss 0.07

    A server-side request forgery vulnerability exists in the cecho.php functionality of MedDream PACS Premium 7.3.5.860. A specially crafted HTTP request can lead to SSRF. An attacker can make an unauthenticated HTTP request to trigger this vulnerability.

  • CVE-2025-20288MedJul 16, 2025
    risk 0.38cvss 5.8epss 0.00

    A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to conduct a server-side request forgery (SSRF) attack through an affected device. This vulnerability is due to improper input validation…

  • CVE-2025-52491MedJun 30, 2025
    risk 0.38cvss 5.8epss 0.00

    Akamai CloudTest before 60 2025.06.09 (12989) allows SSRF.

  • CVE-2025-2109MedMar 25, 2025
    risk 0.38cvss 5.8epss 0.00

    The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 6.30.15 via the init() function. This makes it possible for unauthenticated attackers to make web requests to…

  • CVE-2024-51463MedDec 21, 2024
    risk 0.38cvss 5.4epss 0.01

    IBM i 7.3, 7.4, and 7.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.

  • CVE-2024-33864MedMay 14, 2024
    risk 0.38cvss 5.9epss 0.00

    An issue was discovered in linqi before 1.4.0.1 on Windows. There is SSRF via Document template generation; i.e., via remote images in process creation, file inclusion, and PDF document generation via malicious JavaScript.

  • CVE-2024-24028MedMar 21, 2024
    risk 0.38cvss 5.9epss 0.00

    Server Side Request Forgery (SSRF) vulnerability in Likeshop before 2.5.7 allows attackers to view sensitive information via the avatar parameter in function UserLogic::updateWechatInfo.

  • CVE-2023-32348MedMay 22, 2023
    risk 0.38cvss 5.8epss 0.01

    Teltonika’s Remote Management System versions prior to 4.10.0 contain a virtual private network (VPN) hub feature for cross-device communication that uses OpenVPN. It connects new devices in a manner that allows the new device to communicate with all Teltonika devices…

  • CVE-2021-39339MedSep 22, 2021
    risk 0.38cvss 5.8epss 0.01

    The Telefication WordPress plugin is vulnerable to Open Proxy and Server-Side Request Forgery via the ~/bypass.php file due to a user-supplied URL request value that gets called by a curl requests. This affects versions up to, and including, 1.8.0.

  • CVE-2021-34808MedJun 18, 2021
    risk 0.38cvss 5.8epss 0.01

    Server-Side Request Forgery (SSRF) vulnerability in cgi component in Synology Media Server before 1.8.3-2881 allows remote attackers to access intranet resources via unspecified vectors.

  • CVE-2021-21342MedMar 23, 2021
    risk 0.38cvss 5.3epss 0.50

    XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type information to recreate the formerly written objects. XStream creates therefore new…

  • CVE-2020-12529MedMar 2, 2021
    risk 0.38cvss 5.8epss 0.01

    An issue was discovered in MB connect line mymbCONNECT24 and mbCONNECT24 software in all versions through V2.6.2 There is a SSRF in the LDAP access check, allowing an attacker to scan for open ports.

  • CVE-2020-24444MedDec 10, 2020
    risk 0.38cvss 5.8epss 0.02

    AEM Forms SP6 add-on for AEM 6.5.6.0 and Forms add-on package for AEM 6.4 Service Pack 8 Cumulative Fix Pack 2 (6.4.8.2) have a blind Server-Side Request Forgery (SSRF) vulnerability. This vulnerability could be exploited by an unauthenticated attacker to gather information…

  • CVE-2020-7126MedOct 26, 2020
    risk 0.38cvss 5.8epss 0.01

    A remote server-side request forgery (ssrf) vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

  • CVE-2020-5775MedAug 21, 2020
    risk 0.38cvss 5.8epss 0.07

    Server-Side Request Forgery in Canvas LMS 2020-07-29 allows a remote, unauthenticated attacker to cause the Canvas application to perform HTTP GET requests to arbitrary domains.