Open WebUI: Path traversal / SSRF in terminal server proxy via encoded path traversal

CVSS 7.7 open-webui View details

Budibase: SSRF via OAuth2 Config Validation — Missing fetchWithBlacklist Protection

CVSS 7.7 @budibase/server View details
CVE MEDIUM CVE-2026-43979

local-deep-research is Vulnerable to HTML Injection via Unescaped

CVSS 5.0 local-deep-research View details

PraisonAI has an SSRF bypass

praisonaiagents View details

LangChain Text Splitters: HTMLHeaderTextSplitter.split_text_from_url SSRF Redirect Bypass

CVSS 6.5 langchain-text-splitters View details
CVE MEDIUM CVE-2026-7657

Langflow OSS 1.0.0 through 1.10.3 Langflow could allow server-side request forgery (SSRF) due to incomplete and ineffective SSRF protection enforcement

CVSS 6.5 Langflow OSS View details
CVE MEDIUM CVE-2026-7754

Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery (SSRF) due to insecure default configuration and incomplete enforcement of the SSRF protection mechanism

CVSS 6.5 langflow View details
CVE MEDIUM CVE-2026-48737

pyLoad: SSRF guard bypass via IPv6 6to4/NAT64 transition wrappers of internal

CVSS 4.9 pyload-ng View details

Langflow OSS 1.0.0 through 1.9.6 contains a Server-Side Request Forgery (SSRF). The legacy RSSReaderComponent in rss.py and SearXNG component in searxng.py make unvalidated HTTP requests to user-controlled URLs

CVSS 8.2 langflow View details
CVE MEDIUM CVE-2026-35673

OpenClaw before 2026.4.29 contains an SSRF policy bypass vulnerability in browser debug and export routes that allows reuse of already-open blocked tabs. Attackers with access to these routes

CVSS 6.5 openclaw View details
CVE MEDIUM CVE-2026-46526

local-deep-research has an SSRF bypass in `safe

CVSS 5.0 local-deep-research View details

Budibase: SSRF in AI Extract File Automation Step via Missing IP Blacklist Validation

CVSS 7.7 @budibase/server View details

Open WebUI has a Server-Side Request Forgery (SSRF) bypass in `validate

CVSS 8.5 open-webui View details
CVE MEDIUM CVE-2026-45347

Open WebUI vulnerable to blind server side request forgery (SSRF) via the PDF generate function

CVSS 4.3 open-webui View details

OpenClaw validates Zalo outbound photo URLs through the SSRF guard

OpenClaw: Browser tabs action select and close routes bypassed SSRF policy

OpenClaw: Browser SSRF policy default allowed private-network navigation

OpenClaw: QQBot reply media URL handling could trigger SSRF and re-upload fetched bytes

langchain-openai: Image token counting SSRF protection can be bypassed via DNS rebinding

CVSS 3.1 langchain-openai View details

OpenClaw: SSRF via Unguarded `fetch()` in Marketplace Plugin Download and Ollama Model Discovery

Previous Page 2 of 9 Next