CWE-918— Server-Side Request Forgery (SSRF)
The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.— MITRE CWE catalog
3,834 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-918page 5 of 77
- CVE-2023-43982CRITICALCVSS 9.8EG 9.82023-11-03
Bon Presta boninstagramcarousel between v5.2.1 to v7.0.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the url parameter at insta_parser.php. This vulnerability allows attackers to use the vulnerable website as proxy t…
- CVE-2023-46502CRITICALCVSS 9.8EG 9.82023-10-30
An issue in openCRX v.5.2.2 allows a remote attacker to read internal files and execute server side request forgery attack via insecure DocumentBuilderFactory.
- CVE-2023-43795CRITICALCVSS 9.8EG 9.82023-10-25
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The OGC Web Processing Service (WPS) specification is designed to process information from any server using GET and POST reque…
- CVE-2023-5572CRITICALCVSS 9.8EG 9.82023-10-13
Server-Side Request Forgery (SSRF) in GitHub repository vriteio/vrite prior to 0.3.0.
- CVE-2023-43654CRITICALCVSS 9.8EG 9.82023-09-28
TorchServe is a tool for serving and scaling PyTorch models in production. TorchServe default configuration lacks proper input validation, enabling third parties to invoke remote HTTP download requests and write files to the disk. This iss…
- CVE-2023-41449CRITICALCVSS 9.8EG 9.82023-09-27
An issue in phpkobo AjaxNewsTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the reque parameter.
- CVE-2023-42398CRITICALCVSS 9.8EG 9.82023-09-15
An issue in zzCMS v.2023 allows a remote attacker to execute arbitrary code and obtain sensitive information via the ueditor component in controller.php.
- CVE-2023-35175CRITICALCVSS 9.8EG 9.82023-06-30
Certain HP LaserJet Pro print products are potentially vulnerable to Potential Remote Code Execution and/or Elevation of Privilege via Server-Side Request Forgery (SSRF) using the Web Service Eventing model.
- CVE-2018-17452CRITICALCVSS 9.8EG 9.82023-04-15
An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is Server-Side Request Forgery (SSRF) via a loopback address to the validate_localhost function in url_…
- CVE-2023-1725CRITICALCVSS 9.8EG 9.82023-03-30
Server-Side Request Forgery (SSRF) vulnerability in Infoline Project Management System allows Server Side Request Forgery. This issue affects Project Management System: before 4.09.31.125.
- CVE-2022-46973CRITICALCVSS 9.8EG 9.82023-03-03
Report v0.9.8.6 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability.
- CVE-2022-37938CRITICALCVSS 9.8EG 9.82023-03-01
Unauthenticated server side request forgery in HPE Serviceguard Manager
- CVE-2022-46998CRITICALCVSS 9.8EG 9.82023-01-26
An issue in the website background of taocms v3.0.2 allows attackers to execute a Server-Side Request Forgery (SSRF).
- CVE-2023-23560CRITICALCVSS 9.8EG 9.82023-01-23
In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.
- CVE-2022-39039CRITICALCVSS 9.8EG 9.82023-01-03
aEnrich’s a+HRD has inadequate filtering for specific URL parameter. An unauthenticated remote attacker can exploit this vulnerability to send arbitrary HTTP(s) request to launch Server-Side Request Forgery (SSRF) attack, to perform arbi…
- CVE-2022-47635CRITICALCVSS 9.8EG 9.82022-12-21
Wildix WMS 6 before 6.02.20221216, WMS 5 before 5.04.20221214, and WMS4 before 4.04.45396.23 allows Server-side request forgery (SSRF) via ZohoClient.php.
- CVE-2022-46364CRITICALCVSS 9.8EG 9.82022-12-13
A SSRF vulnerability in parsing the href attribute of XOP:Include in MTOM requests in versions of Apache CXF before 3.5.5 and 3.4.10 allows an attacker to perform SSRF style attacks on webservices that take at least one parameter of any t…
- CVE-2022-35508CRITICALCVSS 9.8EG 9.82022-12-04
Proxmox Virtual Environment (PVE) and Proxmox Mail Gateway (PMG) are vulnerable to SSRF when proxying HTTP requests between pve(pmg)proxy and pve(pmg)daemon. An attacker with an unprivileged account can craft an HTTP request to achieve SSR…
- CVE-2022-41552CRITICALCVSS 9.8EG 9.82022-11-01
Server-Side Request Forgery (SSRF) vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Data Center Analytics, Analytics probe components), Hitachi Ops Center Analyzer on Linux (Hitachi Ops Center Analyzer detail view, Hitac…
- CVE-2022-40296CRITICALCVSS 9.8EG 9.82022-10-31
The application was vulnerable to a Server-Side Request Forgery attacks, allowing the backend server to interact with unexpected endpoints, potentially including internal and local services, leading to attacks in other downstream systems.…
- CVE-2022-38580CRITICALCVSS 9.8EG 9.82022-10-25
Zalando Skipper v0.13.236 is vulnerable to Server-Side Request Forgery (SSRF).
- CVE-2022-42149CRITICALCVSS 9.8EG 9.82022-10-17
kkFileView 4.0 is vulnerable to Server-side request forgery (SSRF) via controller\OnlinePreviewController.java.
- CVE-2022-41497CRITICALCVSS 9.8EG 9.82022-10-13
ClipperCMS 1.3.3 was discovered to contain a Server-Side Request Forgery (SSRF) via the pkg_url parameter at /manager/index.php.
- CVE-2022-41496CRITICALCVSS 9.8EG 9.82022-10-13
iCMS v7.0.16 was discovered to contain a Server-Side Request Forgery (SSRF) via the url parameter at admincp.php.
- CVE-2022-41495CRITICALCVSS 9.8EG 9.82022-10-13
ClipperCMS 1.3.3 was discovered to contain a Server-Side Request Forgery (SSRF) via the rss_url_news parameter at /manager/index.php.
- CVE-2022-40357CRITICALCVSS 9.8EG 9.82022-09-20
A security issue was discovered in Z-BlogPHP <= 1.7.2. A Server-Side Request Forgery (SSRF) vulnerability in the zb_users/plugin/UEditor/php/action_crawler.php file allows remote attackers to force the application to make arbitrary request…
- CVE-2022-38292CRITICALCVSS 9.8EG 9.82022-09-12
SLiMS Senayan Library Management System v9.4.2 was discovered to contain multiple Server-Side Request Forgeries via the components /bibliography/marcsru.php and /bibliography/z3950sru.php.
- CVE-2022-40305CRITICALCVSS 9.8EG 9.82022-09-09
A Server-Side Request Forgery issue in Canto Cumulus through 11.1.3 allows attackers to enumerate the internal network, overload network resources, and possibly have unspecified other impact via the server parameter to the /cwc/login login…
- CVE-2022-36663CRITICALCVSS 9.8EG 9.82022-09-06
Gluu Oxauth before v4.4.1 allows attackers to execute blind SSRF (Server-Side Request Forgery) attacks via a crafted request_uri parameter.
- CVE-2021-27693CRITICALCVSS 9.8EG 9.82022-09-02
Server-side Request Forgery (SSRF) vulnerability in PublicCMS before 4.0.202011.b via /publiccms/admin/ueditor when the action is catchimage.
- CVE-2022-35583CRITICALCVSS 9.8EG 9.82022-08-22
wkhtmlTOpdf 0.12.6 is vulnerable to SSRF which allows an attacker to get initial access into the target's system by injecting iframe tag with initial asset IP address on it's source. This allows the attacker to takeover the whole infrastru…
- CVE-2022-32533CRITICALCVSS 9.8EG 9.82022-07-06
Apache Jetspeed-2 does not sufficiently filter untrusted user input by default leading to a number of issues including XSS, CSRF, XXE, and SSRF. Setting the configuration option "xss.filter.post = true" may mitigate these issues. NOTE: Apa…
- CVE-2022-32995CRITICALCVSS 9.8EG 9.82022-06-27
Halo CMS v1.5.3 was discovered to contain a Server-Side Request Forgery (SSRF) via the template remote download function.
- CVE-2022-2216CRITICALCVSS 9.8EG 9.82022-06-27
Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url prior to 7.0.0.
- CVE-2021-41403CRITICALCVSS 9.8EG 9.82022-06-15
flatCore-CMS version 2.0.8 calls dangerous functions, causing server-side request forgery vulnerabilities.
- CVE-2022-28616CRITICALCVSS 9.8EG 9.82022-05-17
A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView.
- CVE-2022-1386CRITICALCVSS 9.8EG 9.82022-05-16
The Fusion Builder WordPress plugin before 3.6.2, used in the Avada theme, does not validate a parameter in its forms which could be used to initiate arbitrary HTTP requests. The data returned is then reflected back in the application's re…
- CVE-2022-24449CRITICALCVSS 9.8EG 9.82022-04-28
Solar appScreener through 3.10.4, when a valid license is not present, allows XXE and SSRF attacks via a crafted XML document.
- CVE-2022-29556CRITICALCVSS 9.8EG 9.82022-04-28
The iot-manager microservice 1.0.0 in Northern.tech Mender Enterprise before 3.2.2 allows SSRF because the Azure IoT Hub integration provides several SSRF primitives that can execute cross-tenant actions via internal API endpoints.
- CVE-2022-27469CRITICALCVSS 9.8EG 9.82022-04-26
Monstaftp v2.10.3 was discovered to allow attackers to execute Server-Side Request Forgery (SSRF).
- CVE-2022-27429CRITICALCVSS 9.8EG 9.82022-04-25
Jizhicms v1.9.5 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability via /admin.php/Plugins/update.html.
- CVE-2022-27311CRITICALCVSS 9.8EG 9.82022-04-25
Gibbon v3.4.4 and below allows attackers to execute a Server-Side Request Forgery (SSRF) via a crafted URL.
- CVE-2021-45967CRITICALCVSS 9.8EG 9.82022-03-18
An issue was discovered in Pascom Cloud Phone System before 7.20.x. A configuration error between NGINX and a backend Tomcat server leads to a path traversal in the Tomcat server, exposing unintended endpoints.
- CVE-2022-0766CRITICALCVSS 9.8EG 9.82022-03-07
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.17.
- CVE-2021-20325CRITICALCVSS 9.8EG 9.82022-02-18
Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red Hat Enterprise Linux 8.5.0, causes a security regression compared to the versions shipped in Red Hat Enterprise Linux 8.4. A user who installs …
- CVE-2022-24568CRITICALCVSS 9.8EG 9.82022-02-10
Novel-plus v3.6.0 was discovered to be vulnerable to Server-Side Request Forgery (SSRF) via user-supplied crafted input.
- CVE-2021-42637CRITICALCVSS 9.8EG 9.82022-02-02
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability.
- CVE-2022-0339CRITICALCVSS 9.8EG 9.82022-01-30
Server-Side Request Forgery (SSRF) in Pypi calibreweb prior to 0.6.16.
- CVE-2022-0086CRITICALCVSS 9.8EG 9.82022-01-04
uppy is vulnerable to Server-Side Request Forgery (SSRF)
- CVE-2021-44659CRITICALCVSS 9.8EG 9.82021-12-22
Adding a new pipeline in GoCD server version 21.3.0 has a functionality that could be abused to do an un-intended action in order to achieve a Server Side Request Forgery (SSRF). NOTE: the vendor's position is that the observed behavior is…
Map vulnerabilities like CWE-918 to your infrastructure
EchelonGraph correlates every CVE — across CWE-918 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →