Flowise Execute Flow function has an SSRF vulnerability

flowise-components View details
CVE MEDIUM CVE-2026-40115

PraisonAI has Unrestricted Upload Size in WSGI Recipe Registry Server

CVSS 6.2 PraisonAI View details
CVE MEDIUM CVE-2026-34753

vLLM: Server-Side Request Forgery (SSRF) in `download_bytes_from

CVSS 5.4 vllm View details
CVE MEDIUM CVE-2026-33682

prior to 1.54.0 running on Windows hosts have an unauthenticated Server-Side Request Forgery (SSRF) vulnerability. The vulnerability arises from improper validation of attacker-supplied filesystem paths. In certain code

CVSS 4.7 Streamlit View details
CVE MEDIUM CVE-2024-48052

gradio <=4.42.0, the gr.DownloadButton function has a hidden server-side request forgery (SSRF) vulnerability. The reason is that within the save_url_to_cache function, there are no restrictions

CVSS 6.5 gradio View details
CVE MEDIUM CVE-2024-4940

exploited for phishing attacks, Cross-site Scripting (XSS), Server-Side Request Forgery (SSRF), amongst others. This issue is due to improper validation of user-supplied input in the handling

CVSS 6.1 gradio View details
CVE MEDIUM CVE-2024-2206

SSRF vulnerability exists in the gradio-app/gradio due to insufficient validation of user-supplied URLs in the `/proxy` route. Attackers can exploit this vulnerability by manipulating the `self.replica_urls

CVSS 6.5 gradio View details

OpenClaw: Agent gateway config mutations could change protected operator settings

OpenClaw: CDP /json/version WebSocket URL could pivot to untrusted second

OpenClaw: Browser press/type interaction routes missed complete navigation guard coverage

CVE MEDIUM CVE-2026-6011

OpenClaw vulnerable to SSRF in src/agents/tools/web-fetch.ts

CVSS 5.6 openclaw View details

TaskWeaver has Protection Mechanism Failure and Server-Side Request Forgery (SSRF

CVSS 6.5 agentos-taskweaver View details
CVE MEDIUM CVE-2025-68477

Langflow is a tool for building and deploying AI-powered

CVSS 6.5 langflow View details
Paper 2512.14860v1

Penetration Testing of Agentic AI: A Comparative Security Analysis Across Models and Frameworks

system and 13 distinct attack scenarios that span prompt injection, Server Side Request Forgery (SSRF), SQL injection, and tool misuse. Our 130 total test cases reveal significant security disparities: AutoGen

medium relevance tool
Previous Page 2 of 2