Vulnerabilities > Server-Side Request Forgery (SSRF)

DATE CVE VULNERABILITY TITLE RISK
2021-06-03 CVE-2020-35970 Server-Side Request Forgery (SSRF) vulnerability in Yzmcms 5.8
An issue was discovered in YzmCMS 5.8.
network
low complexity
yzmcms CWE-918
7.5
2021-06-02 CVE-2021-20343 Server-Side Request Forgery (SSRF) vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
5.4
2021-06-02 CVE-2021-20345 Server-Side Request Forgery (SSRF) vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
5.4
2021-06-02 CVE-2021-20346 Server-Side Request Forgery (SSRF) vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
5.4
2021-06-02 CVE-2021-20347 Server-Side Request Forgery (SSRF) vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
5.4
2021-06-02 CVE-2021-20348 Server-Side Request Forgery (SSRF) vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
5.4
2021-06-01 CVE-2021-25640 Server-Side Request Forgery (SSRF) vulnerability in Apache Dubbo
In Apache Dubbo prior to 2.6.9 and 2.7.9, the usage of parseURL method will lead to the bypass of white host check which can cause open redirect or SSRF vulnerability.
network
low complexity
apache CWE-918
6.1
2021-05-24 CVE-2021-30108 Server-Side Request Forgery (SSRF) vulnerability in Feehi CMS 2.1.1
Feehi CMS 2.1.1 is affected by a Server-side request forgery (SSRF) vulnerability.
network
low complexity
feehi CWE-918
critical
9.1
2021-05-21 CVE-2021-33510 Server-Side Request Forgery (SSRF) vulnerability in Plone
Plone through 5.2.4 allows remote authenticated managers to conduct SSRF attacks via an event ical URL, to read one line of a file.
network
low complexity
plone CWE-918
4.3
2021-05-21 CVE-2021-33511 Server-Side Request Forgery (SSRF) vulnerability in Plone
Plone though 5.2.4 allows SSRF via the lxml parser.
network
low complexity
plone CWE-918
7.5