webhook registration endpoint that allows authenticated users to register internal URLs due to missing SSRF protection. Attackers can trigger alarm threshold breaches to force the server to issue POST requests

CVSS 8.5 pinpoint View details
CVE MEDIUM CVE-2026-54033

setting a baseURL. This URL is used to construct HTTP requests without any SSRF validation — no private IP check, no scheme restriction, no DNS pinning. An authenticated user

CVE MEDIUM CVE-2026-49345

mapping of the information system. Prior to version 2025.05.19, a Server-Side Request Forgery (SSRF) vulnerability exists in Mercator's CVE configuration panel (`/admin/config/parameters`). The `testProvider()` method in `ConfigurationController` passes

PraisonAI: Jobs API exposes agent-execution endpoints with no authentication

CVSS 9.8 praisonai View details

Open WebUI: SSRF Protection Bypass in Playwright Web Loader via HTTP Redirects

CVSS 7.7 open-webui View details
CVE MEDIUM CVE-2026-3341

Langflow Desktop 1.0.0 through 1.9.2 IBM Langflow is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading

CVSS 5.4 langflow View details
CVE MEDIUM CVE-2026-47390

PraisonAI spider_tools SSRF protection bypass via alternate loopback host encodings

CVSS 5.5 PraisonAI View details

Open WebUI: Jupyter code execution works despite `ENABLE_CODE_EXECUTION

CVSS 8.8 open-webui View details

Open WebUI has a full SSRF Vulnerability in the RAG Web Search Feature

CVSS 8.5 open-webui View details

Server-Side Request Forgery (SSRF) vulnerability exists in MLflow versions prior to 3.9.0. The `_create_webhook()` function in `mlflow/server/handlers.py` accepts a user-controlled `url` parameter without validation, and the `_send

CVSS 7.1 mlflow View details

affected by path traversal, redirect-following SSRF, and telemetry payload exposure

CVSS 8.3 n8n-mcp View details
CVE MEDIUM CVE-2026-3340

Langflow Desktop 1.0.0 through 1.8.4 IBM Langflow is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading

CVSS 6.5 langflow View details

OpenClaw: QQBot direct media upload skipped URL SSRF validation

used by get_num_tokens_from_messages for image token counting) validated URLs for SSRF protection and then fetched them in a separate network operation with independent DNS resolution. This

CVSS 3.1 langchain View details
CVE MEDIUM CVE-2026-41481

attacker-controlled server could redirect to internal, localhost, or cloud metadata endpoints, bypassing SSRF protections. The resp

CVSS 6.5 langchain View details

core security wrappers (secureAxiosRequest and secureFetch) intended to prevent Server-Side Request Forgery (SSRF) contain multiple logic flaws. These flaws allow attackers to bypass the allow/deny lists via DNS Rebinding

CVSS 7.1 flowise View details

customized large language model flow. Prior to 3.1.0, a Server-Side Request Forgery (SSRF) vulnerability exists in FlowiseAI's POST/GET API Chain components that allows unauthenticated attackers to force

CVSS 8.3 flowise View details

OpenClaw: Browser snapshot and screenshot routes could expose internal page

Flowise: SSRF Protection Bypass (TOCTOU & Default Insecure

CVSS 7.1 flowise-components View details

Flowise Execute Flow function has an SSRF vulnerability

flowise-components View details
Previous Page 5 of 9 Next