Budibase: SSRF in AI Extract File Automation Step via Missing IP Blacklist Validation

CVSS 7.7 @budibase/server View details

Open WebUI has a Server-Side Request Forgery (SSRF) bypass in `validate

CVSS 8.5 open-webui View details

powered applications. Prior to version 1.1.8, a redirect-based Server-Side Request Forgery (SSRF) bypass exists in `RecursiveUrlLoader` in `@langchain/community`. The loader validates the initial URL but allows the underlying

Open WebUI vulnerable to Server-Side Request Forgery (SSRF) via Arbitrary URL Processing in /api/v1/retrieval/process/web

CVSS 8.5 open-webui View details

source, AI chat framework. Versions of lobe-chat prior to 1.19.13 have an unauthorized ssrf vulnerability. An attacker can construct malicious requests to cause SSRF without logging in, attack intranet

CVSS 8.6 lobe_chat View details

IPv4-mapped IPv6 addresses bypass SSRF protection in validateUrlSync(), enabling full SSRF for SDK embedders

CVSS 8.5 n8n-mcp View details

PraisonAI Vulnerable to Server-Side Request Forgery via Unvalidated webhook

CVSS 7.2 PraisonAI View details

OpenClaw: SSRF via Unguarded Configured Base URLs in Multiple Channel Extensions (Incomplete

CVSS 7.4 openclaw View details

agent teams system. In versions prior to 1.6.58, the web_crawl tool performs its SSRF check only on the initially supplied URL, allowing the protection to be bypassed

through 1.10.3, and 1.0.0 through 1.10.3 contains a Server-Side Request Forgery (SSRF) vulnerability in the validate_model_provider_key() function for the Ollama provider. The function accepts a user

CVSS 7.1 Langflow OSS View details

plus a caller-supplied path and returns the full response body. MLflow's existing SSRF guard, _validate_webhook_url (which blocks non-global and metada

attacker to receive the operator's key on a public host that passes the SSRF guard. This issue is fixed in version

CVSS 8.6 flyto-core View details

LMDeploy through 0.14.0, fixed in commit 03c3130, contains a server-side request forgery (SSRF) vulnerability in the _load_http_url function within the connection.py media handler, where the private

CVSS 8.6 lmdeploy View details

text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compatible multimodal chat completions endpoint that allows unauthenticated network attackers to coerce the server

CVSS 8.6 text-generation-inference View details

them at connection time without IP pinning. Attackers can use DNS rebinding to bypass SSRF protection and retrieve internal HTTP response bodies from private or loopback services

CVSS 8.5 PraisonAI View details

server-side request forgery vulnerability in the Crawl4AI/Chromium backend that allows attackers to bypass SSRF validation by exploiting DNS rebinding and HTTP redirects. Attackers can craft URLs that resolve

CVSS 8.5 praisonai View details

time, allowing attackers to use DNS rebinding to reach internal services with a blind SSRF attack

CVSS 7.2 praisonai View details

vulnerability that allows attackers to redirect users to arbitrary URLs or perform client-side SSRF by supplying unvalidated HTTP/HTTPS URLs to the file_fetch() function in the /gradio_api/file= endpoint. Attackers

CVSS 7.4 gradio View details

Server-side request forgery (ssrf) in Azure OpenAI allows an authorized attacker to elevate privileges over a network

webhook registration endpoint that allows authenticated users to register internal URLs due to missing SSRF protection. Attackers can trigger alarm threshold breaches to force the server to issue POST requests

CVSS 8.5 pinpoint View details
Previous Page 2 of 5 Next