Vulnerabilities > Server-Side Request Forgery (SSRF)

DATE CVE VULNERABILITY TITLE RISK
2021-07-07 CVE-2020-24148 Server-Side Request Forgery (SSRF) vulnerability in Mooveagency Import XML and RSS Feeds 2.0.1
Server-side request forgery (SSRF) in the Import XML and RSS Feeds (import-xml-feed) plugin 2.0.1 for WordPress via the data parameter in a moove_read_xml action.
network
low complexity
mooveagency CWE-918
6.4
2021-07-07 CVE-2020-24149 Server-Side Request Forgery (SSRF) vulnerability in Secondline Podcast Importer Secondline 1.1.4
Server-side request forgery (SSRF) in the Podcast Importer SecondLine (podcast-importer-secondline) plugin 1.1.4 for WordPress via the podcast_feed parameter in a secondline_import_initialize action to the secondlinepodcastimport page.
network
low complexity
secondline CWE-918
5.0
2021-07-02 CVE-2021-35209 Server-Side Request Forgery (SSRF) vulnerability in Zimbra Collaboration
An issue was discovered in ProxyServlet.java in the /proxy servlet in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.x before 9.0.0 Patch 16.
network
low complexity
zimbra CWE-918
7.5
2021-07-02 CVE-2021-32639 Server-Side Request Forgery (SSRF) vulnerability in NSA Emissary
Emissary is a P2P-based, data-driven workflow engine.
network
low complexity
nsa CWE-918
6.5
2021-06-29 CVE-2021-31531 Server-Side Request Forgery (SSRF) vulnerability in Zohocorp Manageengine Servicedesk Plus MSP 10.5
Zoho ManageEngine ServiceDesk Plus MSP before 10521 is vulnerable to Server-Side Request Forgery (SSRF).
network
low complexity
zohocorp CWE-918
7.5
2021-06-24 CVE-2020-21788 Server-Side Request Forgery (SSRF) vulnerability in Crmeb 3.1.0+
In CRMEB 3.1.0+ strict domain name filtering leads to SSRF(Server-Side Request Forgery).
network
low complexity
crmeb CWE-918
4.0
2021-06-21 CVE-2021-32698 Server-Side Request Forgery (SSRF) vulnerability in Elabftw
eLabFTW is an open source electronic lab notebook for research labs.
network
low complexity
elabftw CWE-918
4.0
2021-06-18 CVE-2021-34808 Server-Side Request Forgery (SSRF) vulnerability in Synology Media Server
Server-Side Request Forgery (SSRF) vulnerability in cgi component in Synology Media Server before 1.8.3-2881 allows remote attackers to access intranet resources via unspecified vectors.
network
low complexity
synology CWE-918
5.0
2021-06-18 CVE-2021-34811 Server-Side Request Forgery (SSRF) vulnerability in Synology Download Station
Server-Side Request Forgery (SSRF) vulnerability in task management component in Synology Download Station before 3.8.16-3566 allows remote authenticated users to access intranet resources via unspecified vectors.
network
low complexity
synology CWE-918
4.0
2021-06-16 CVE-2021-20483 Server-Side Request Forgery (SSRF) vulnerability in IBM Security Identity Manager 6.0.2
IBM Security Identity Manager 6.0.2 is vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
4.0