Vulnerabilities > Server-Side Request Forgery (SSRF)

DATE CVE VULNERABILITY TITLE RISK
2023-12-29 CVE-2023-7078 Server-Side Request Forgery (SSRF) vulnerability in Cloudflare Miniflare 3.20230821.0
Sending specially crafted HTTP requests to Miniflare's server could result in arbitrary HTTP and WebSocket requests being sent from the server.
low complexity
cloudflare CWE-918
8.1
2023-12-26 CVE-2023-51467 Server-Side Request Forgery (SSRF) vulnerability in Apache Ofbiz
The vulnerability permits attackers to circumvent authentication processes, enabling them to remotely execute arbitrary code
network
low complexity
apache CWE-918
critical
9.8
2023-12-26 CVE-2023-50968 Server-Side Request Forgery (SSRF) vulnerability in Apache Ofbiz
Arbitrary file properties reading vulnerability in Apache Software Foundation Apache OFBiz when user operates an uri call without authorizations. The same uri can be operated to realize a SSRF attack also without authorizations. Users are recommended to upgrade to version 18.12.11, which fixes this issue.
network
low complexity
apache CWE-918
7.5
2023-12-22 CVE-2023-51451 Server-Side Request Forgery (SSRF) vulnerability in Sentry Symbolicator 0.3.3/23.11.2
Symbolicator is a service used in Sentry.
network
low complexity
sentry CWE-918
4.3
2023-12-19 CVE-2023-46262 Server-Side Request Forgery (SSRF) vulnerability in Ivanti Avalanche
An unauthenticated attacked could send a specifically crafted web request causing a Server-Side Request Forgery (SSRF) in Ivanti Avalanche Remote Control server.
network
low complexity
ivanti CWE-918
7.5
2023-12-14 CVE-2023-40630 Server-Side Request Forgery (SSRF) vulnerability in Joomcode Jcdashboard 1.0.0/1.1.30
Unauthenticated LFI/SSRF in JCDashboards component for Joomla.
network
low complexity
joomcode CWE-918
critical
9.8
2023-12-13 CVE-2023-47619 Server-Side Request Forgery (SSRF) vulnerability in Audiobookshelf
Audiobookshelf is a self-hosted audiobook and podcast server.
network
low complexity
audiobookshelf CWE-918
6.5
2023-12-07 CVE-2022-45362 Server-Side Request Forgery (SSRF) vulnerability in Paytm Payment Gateway 2.7.0
Server-Side Request Forgery (SSRF) vulnerability in Paytm Paytm Payment Gateway.This issue affects Paytm Payment Gateway: from n/a through 2.7.0.
network
low complexity
paytm CWE-918
6.5
2023-12-07 CVE-2023-49746 Server-Side Request Forgery (SSRF) vulnerability in Softaculous Speedycache
Server-Side Request Forgery (SSRF) vulnerability in Softaculous Team SpeedyCache – Cache, Optimization, Performance.This issue affects SpeedyCache – Cache, Optimization, Performance: from n/a through 1.1.2.
network
low complexity
softaculous CWE-918
4.3
2023-12-04 CVE-2023-48910 Server-Side Request Forgery (SSRF) vulnerability in Microcks
Microcks up to 1.17.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /jobs and /artifact/download.
network
low complexity
microcks CWE-918
critical
9.8