Vulnerabilities > Server-Side Request Forgery (SSRF)

DATE CVE VULNERABILITY TITLE RISK
2023-11-14 CVE-2023-6124 Server-Side Request Forgery (SSRF) vulnerability in Salesagility Suitecrm
Server-Side Request Forgery (SSRF) in GitHub repository salesagility/suitecrm prior to 7.14.2, 8.4.2, 7.12.14.
network
low complexity
salesagility CWE-918
4.3
2023-11-13 CVE-2023-46207 Server-Side Request Forgery (SSRF) vulnerability in Stylemixthemes Motors - CAR Dealer, Classifieds & Listing
Server-Side Request Forgery (SSRF) vulnerability in StylemixThemes Motors – Car Dealer, Classifieds & Listing.This issue affects Motors – Car Dealer, Classifieds & Listing: from n/a through 1.4.6.
network
low complexity
stylemixthemes CWE-918
7.5
2023-11-07 CVE-2023-42361 Server-Side Request Forgery (SSRF) vulnerability in Midori-Global Better PDF Exporter 10.0.0/10.3.0
Local File Inclusion vulnerability in Midori-global Better PDF Exporter for Jira Server and Jira Data Center v.10.3.0 and before allows an attacker to view arbitrary files and cause other impacts via use of crafted image during PDF export.
local
low complexity
midori-global CWE-918
7.8
2023-11-03 CVE-2022-3172 Server-Side Request Forgery (SSRF) vulnerability in Kubernetes Apiserver
A security issue was discovered in kube-apiserver that allows an aggregated API server to redirect client traffic to any URL.
network
low complexity
kubernetes CWE-918
8.2
2023-11-03 CVE-2023-43982 Server-Side Request Forgery (SSRF) vulnerability in Bontheme Socialfeed - Photos & Video Using Instagram API 5.2.1/5.2.3/6.0.0
Bon Presta boninstagramcarousel between v5.2.1 to v7.0.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the url parameter at insta_parser.php.
network
low complexity
bontheme CWE-918
critical
9.8
2023-11-03 CVE-2023-35896 Server-Side Request Forgery (SSRF) vulnerability in IBM Content Navigator 3.0.13
IBM Content Navigator 3.0.13 is vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
5.4
2023-10-25 CVE-2023-41339 Server-Side Request Forgery (SSRF) vulnerability in Osgeo Geoserver
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data.
network
low complexity
osgeo CWE-918
5.3
2023-10-25 CVE-2023-43795 Server-Side Request Forgery (SSRF) vulnerability in Osgeo Geoserver
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data.
network
low complexity
osgeo CWE-918
critical
9.8
2023-10-25 CVE-2023-46124 Server-Side Request Forgery (SSRF) vulnerability in Ethyca Fides
Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in runtime environments, and the enforcement of privacy regulations in code.
network
low complexity
ethyca CWE-918
7.2
2023-10-23 CVE-2023-45966 Server-Side Request Forgery (SSRF) vulnerability in Remark42
umputun remark42 version 1.12.1 and before has a Blind Server-Side Request Forgery (SSRF) vulnerability.
network
low complexity
remark42 CWE-918
7.5