VYPR

CWE-918

Server-Side Request Forgery (SSRF)

BaseIncomplete

Description

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-664

CVEs mapped to this weakness (3,621)

page 56 of 182
  • CVE-2026-79635HigSep 9, 2026
    risk 0.47cvss 7.3epss 0.00

    Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to…

  • CVE-2026-80123HigSep 9, 2026
    risk 0.47cvss 7.3epss 0.00

    Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to…

  • CVE-2026-81806HigSep 8, 2026
    risk 0.47cvss 7.2epss 0.00

    Server-Side Request Forgery (SSRF) vulnerability in John Darrel Hide My WP Ghost allows Server Side Request Forgery. This issue affects Hide My WP Ghost: from n/a through 7.0.09.

  • CVE-2026-86539HigSep 7, 2026
    risk 0.47cvss 7.2epss 0.00

    knowns through 0.33.0 contains a server-side request forgery vulnerability in the POST /api/embedding-models/test endpoint that issues outbound requests to caller-supplied destinations without validation. Attackers can enumerate internal hosts and cloud metadata endpoints by…

  • CVE-2026-86273HigSep 7, 2026
    risk 0.47cvss 7.3epss 0.00

    A weakness has been identified in projeto-siga siga up to 11.1.1. Affected by this issue is the function DownloadExterno.getUrl of the file sigaex/src/main/java/br/gov/jfrj/siga/vraptor/ExUtilController.java of the component HTML-to-PDF Endpoint. This manipulation of the…

  • CVE-2026-52769HigSep 5, 2026
    risk 0.47cvss 8.3epss 0.00

    YesWiki is a wiki system written in PHP. From version 4.6.2 to before version 4.6.6, the POST /api/forms/{formId}/actor/inbox route - exposed publicly with acl:"public" - accepts an HTTP Signature header whose keyId parameter is a URL. HttpSignatureService::verifySignature()…

  • CVE-2026-85380HigSep 4, 2026
    risk 0.47cvss 7.3epss 0.00

    A weakness has been identified in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This vulnerability affects the function catchimage of the file Public/ueditor/php/controller.php of the component UEditor. This manipulation of the…

  • CVE-2026-84761HigSep 3, 2026
    risk 0.47cvss 7.2epss 0.00

    Unauthenticated Server Side Request Forgery (SSRF) in LiteSpeed Cache <= 7.9 versions.

  • CVE-2026-8712HigSep 1, 2026
    risk 0.47cvss 8.3epss 0.00

    Wyoming before 1.10.2 contains a server-side request forgery vulnerability that allows unauthenticated attackers with network access to force outbound connections to arbitrary targets by supplying a malicious `uri` query parameter to the HTTP API. Attackers can pass arbitrary…

  • CVE-2026-82957HigAug 31, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was found in hyperledger-firefly firefly up to 1.4.0. The impacted element is the function ValidateOptions of the file internal/events/webhooks/webhooks.go of the component Webhook Subscription. Performing a manipulation of the argument url results in server-side…

  • CVE-2026-53507HigAug 31, 2026
    risk 0.47cvss —epss 0.00

    oasdiff-action is a GitHub Action that detects breaking changes in OpenAPI specs and post a review on every pull request. Before version 0.0.51, the oasdiff actions resolved external $refs in the OpenAPI spec by default (allow-external-refs: true). When an action runs on a pull…

  • CVE-2026-82801HigAug 31, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was detected in NASA earthdata-search 1.0.0. Affected by this vulnerability is the function scaleImage of the file serverless/src/scaleImage/handler.js of the component scale Endpoint. Performing a manipulation results in server-side request forgery. The attack…

  • CVE-2026-82630HigAug 31, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was identified in PowerJob up to 5.1.2. Impacted is the function MuConnectionManager.getOrCreateConnection of the file powerjob-server/powerjob-server-starter/src/main/java/tech/powerjob/server/web/controller/TestController.java of the component Transport…

  • CVE-2026-81421HigAug 27, 2026
    risk 0.47cvss 7.3epss 0.00

    A security flaw has been discovered in ddfourtwo sentry-selfhosted-mcp 0.4.0. The affected element is an unknown function of the component raw_sentry_api. The manipulation of the argument endpoint results in server-side request forgery. It is possible to launch the attack…

  • CVE-2026-54794HigAug 19, 2026
    risk 0.47cvss 7.2epss 0.00

    Dell OpenManage Enterprise, versions prior to 4.7.0, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.

  • CVE-2026-17565HigAug 19, 2026
    risk 0.47cvss 7.2epss 0.00

    The Animation Addons for Elementor WordPress plugin before 2.7.2 does not validate a user-supplied value before using it to build the host of a server-side HTTP request, allowing unauthenticated users to make the site issue requests to internal hosts and read the responses back.

  • CVE-2026-32553HigAug 18, 2026
    risk 0.47cvss 7.2epss 0.00

    Unauthenticated Server Side Request Forgery (SSRF) in OttoKit <= 1.1.35 versions.

  • CVE-2026-32473HigAug 18, 2026
    risk 0.47cvss 7.2epss 0.00

    Unauthenticated Server Side Request Forgery (SSRF) in PDF Smart Viewer for Elementor <= 1.0.4 versions.

  • CVE-2026-19753HigAug 13, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was detected in Model Context Protocol mcp-rdf-explorer 1.0.0. Affected is the function explore_url of the file src/mcp-rdf-explorer/server.py of the component MCP Server. Performing a manipulation of the argument url results in server-side request forgery. The…

  • CVE-2026-66704HigAug 13, 2026
    risk 0.47cvss 7.2epss 0.00

    Unauthenticated Server Side Request Forgery (SSRF) in Gutenverse Companion <= 2.5.1 versions.