Vulnerabilities > Server-Side Request Forgery (SSRF)
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-06-28 | CVE-2017-20106 | Server-Side Request Forgery (SSRF) vulnerability in Khoros Lithium Forum 2017 A vulnerability, which was classified as critical, has been found in Lithium Forum 2017 Q1. | 4.4 |
2022-06-27 | CVE-2022-32995 | Server-Side Request Forgery (SSRF) vulnerability in Halo 1.5.3 Halo CMS v1.5.3 was discovered to contain a Server-Side Request Forgery (SSRF) via the template remote download function. | 9.8 |
2022-06-27 | CVE-2022-1977 | Server-Side Request Forgery (SSRF) vulnerability in Smackcoders Import ALL Pages, Post Types, Products, Orders, and Users AS XML & CSV The Import Export All WordPress Images, Users & Post Types WordPress plugin before 6.5.3 does not fully validate the file to be imported via an URL before making an HTTP request to it, which could allow high privilege users such as admin to perform Blind SSRF attacks | 7.2 |
2022-06-24 | CVE-2021-20421 | Server-Side Request Forgery (SSRF) vulnerability in IBM Jazz Team Server IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerable to server-side request forgery (SSRF). | 4.3 |
2022-06-24 | CVE-2021-20544 | Server-Side Request Forgery (SSRF) vulnerability in IBM Jazz Team Server IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerable to server-side request forgery (SSRF). | 4.3 |
2022-06-23 | CVE-2022-34011 | Server-Side Request Forgery (SSRF) vulnerability in Zhyd Oneblog 2.3.4 OneBlog v2.3.4 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability via the parameter entryUrls. | 4.3 |
2022-06-23 | CVE-2022-34013 | Server-Side Request Forgery (SSRF) vulnerability in Zhyd Oneblog 2.3.4 OneBlog v2.3.4 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability via the Logo parameter under the Link module. | 4.3 |
2022-06-21 | CVE-2021-36761 | Server-Side Request Forgery (SSRF) vulnerability in Qlik Sense April2020 The GeoAnalytics feature in Qlik Sense April 2020 patch 4 allows SSRF. | 5.3 |
2022-06-15 | CVE-2021-41403 | Server-Side Request Forgery (SSRF) vulnerability in Flatcore Flatcore-Cms 2.0.8 flatCore-CMS version 2.0.8 calls dangerous functions, causing server-side request forgery vulnerabilities. | 9.8 |
2022-06-13 | CVE-2021-40604 | Server-Side Request Forgery (SSRF) vulnerability in Invisioncommunity IPS Community Suite A Server-Side Request Forgery (SSRF) vulnerability in IPS Community Suite before 4.6.2 allows remote authenticated users to request arbitrary URLs or trigger deserialization via phar protocol when generating class names dynamically. | 9.1 |