VYPR

CWE-918

Server-Side Request Forgery (SSRF)

BaseIncomplete

Description

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-664

CVEs mapped to this weakness (3,632)

page 16 of 182
  • CVE-2025-28089CriMar 28, 2025
    risk 0.59cvss 9.1epss 0.00

    maccms10 v2025.1000.4047 is vulnerable to Server-Side Request Forgery (SSRF) via the Scheduled Task function.

  • CVE-2025-25785CriFeb 26, 2025
    risk 0.59cvss 9.1epss 0.00

    JizhiCMS v2.5.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the component \c\PluginsController.php. This vulnerability allows attackers to perform an intranet scan via a crafted request.

  • CVE-2025-21385HigJan 9, 2025
    risk 0.59cvss 8.8epss 0.24

    A Server-Side Request Forgery (SSRF) vulnerability in Microsoft Purview allows an authorized attacker to disclose information over a network.

  • CVE-2024-47578CriDec 10, 2024
    risk 0.59cvss 9.1epss 0.01

    Adobe Document Service allows an attacker with administrator privileges to send a crafted request from a vulnerable web application. It is usually used to target internal systems behind firewalls that are normally inaccessible to an attacker from the external network, resulting…

  • CVE-2023-50913CriDec 5, 2024
    risk 0.59cvss 9.1epss 0.00

    Oxide control plane software before 5 allows SSRF.

  • CVE-2024-50811CriNov 8, 2024
    risk 0.59cvss 9.1epss 0.00

    hopetree izone lts c011b48 contains a server-side request forgery (SSRF) vulnerability in the active push function as \\apps\\tool\\apis\\bd_push.py does not securely filter user input through push_urls() and get_urls().

  • CVE-2024-45518HigOct 22, 2024
    risk 0.59cvss 8.8epss 0.21

    An issue was discovered in Zimbra Collaboration (ZCS) 10.1.x before 10.1.1, 10.0.x before 10.0.9, 9.0.0 before Patch 41, and 8.8.15 before Patch 46. It allows authenticated users to exploit Server-Side Request Forgery (SSRF) due to improper input sanitization and misconfigured…

  • CVE-2024-38109CriAug 13, 2024
    risk 0.59cvss 9.1epss 0.02

    An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure Health Bot to elevate privileges over a network.

  • CVE-2024-36675CriJun 4, 2024
    risk 0.59cvss 9.1epss 0.01

    LyLme_spage v1.9.5 is vulnerable to Server-Side Request Forgery (SSRF) via the get_head function.

  • CVE-2024-4399CriMay 23, 2024
    risk 0.59cvss 9.1epss 0.02

    The does not validate a parameter before making a request to it, which could allow unauthenticated users to perform SSRF attack

  • CVE-2024-34365CriMay 14, 2024
    risk 0.59cvss 9.1epss 0.01

    ** UNSUPPORTED WHEN ASSIGNED ** Improper Input Validation vulnerability in Apache Karaf Cave.This issue affects all versions of Apache Karaf Cave. As this project is retired, we do not plan to release a version that fixes this issue. Users are recommended to find an alternative…

  • CVE-2024-25864CriApr 3, 2024
    risk 0.59cvss 9.1epss 0.01

    Server Side Request Forgery (SSRF) vulnerability in Friendica versions after v.2023.12, allows a remote attacker to execute arbitrary code and obtain sensitive information via the fpostit.php component.

  • CVE-2024-25294CriMar 20, 2024
    risk 0.59cvss 9.1epss 0.01

    An SSRF issue in REBUILD v.3.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the FileDownloader.java, proxyDownload,URL parameters.

  • CVE-2023-50731CriDec 22, 2023
    risk 0.59cvss 9.1epss 0.01

    MindsDB is a SQL Server for artificial intelligence. Prior to version 23.11.4.1, the `put` method in `mindsdb/mindsdb/api/http/namespaces/file.py` does not validate the user-controlled name value, which is used in a temporary file name, which is afterwards opened for writing on…

  • CVE-2022-42183CriJul 31, 2023
    risk 0.59cvss 9.1epss 0.01

    Precisely Spectrum Spatial Analyst 20.01 is vulnerable to Server-Side Request Forgery (SSRF).

  • CVE-2023-27162CriMar 31, 2023
    risk 0.59cvss 9.1epss 0.01

    openapi-generator up to v6.4.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/gen/clients/{language}. This vulnerability allows attackers to access network resources and sensitive information via a crafted API request.

  • CVE-2022-45926HigJan 18, 2023
    risk 0.59cvss 8.8epss 0.17

    An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The endpoint notify.localizeEmailTemplate allows a low-privilege user to evaluate webreports.

  • CVE-2022-40842CriNov 22, 2022
    risk 0.59cvss 9.1epss 0.01

    ndk design NdkAdvancedCustomizationFields 3.5.0 is vulnerable to Server-side request forgery (SSRF) via rotateimg.php.

  • CVE-2022-41477CriOct 14, 2022
    risk 0.59cvss 9.1epss 0.01

    A security issue was discovered in WeBid <=1.2.2. A Server-Side Request Forgery (SSRF) vulnerability in the admin/theme.php file allows remote attackers to inject payloads via theme parameters to read files across directories.

  • CVE-2022-25801CriJul 14, 2022
    risk 0.59cvss 9.1epss 0.01

    Best Practical RT for Incident Response (RTIR) before 4.0.3 and 5.x before 5.0.3 allows SSRF via Scripted Action tools.