Vulnerabilities > Server-Side Request Forgery (SSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-07-26 CVE-2024-41118 Server-Side Request Forgery (SSRF) vulnerability in Opengeos Streamlit-Geospatial
streamlit-geospatial is a streamlit multipage app for geospatial applications.
network
low complexity
opengeos CWE-918
critical
9.8
2024-07-26 CVE-2024-41120 Server-Side Request Forgery (SSRF) vulnerability in Opengeos Streamlit-Geospatial
streamlit-geospatial is a streamlit multipage app for geospatial applications.
network
low complexity
opengeos CWE-918
critical
9.8
2024-07-26 CVE-2024-41812 Server-Side Request Forgery (SSRF) vulnerability in Txtdot
txtdot is an HTTP proxy that parses only text, links, and pictures from pages, removing ads and heavy scripts.
network
low complexity
txtdot CWE-918
7.5
2024-07-26 CVE-2024-41813 Server-Side Request Forgery (SSRF) vulnerability in Txtdot
txtdot is an HTTP proxy that parses only text, links, and pictures from pages, removing ads and heavy scripts.
network
low complexity
txtdot CWE-918
7.5
2024-07-12 CVE-2024-40543 Server-Side Request Forgery (SSRF) vulnerability in Publiccms
PublicCMS v4.0.202302.e was discovered to contain a Server-Side Request Forgery (SSRF) via the component /admin/ueditor?action=catchimage.
network
low complexity
publiccms CWE-918
8.8
2024-07-12 CVE-2024-40544 Server-Side Request Forgery (SSRF) vulnerability in Publiccms
PublicCMS v4.0.202302.e was discovered to contain a Server-Side Request Forgery (SSRF) via the component /admin/#maintenance_sysTask/edit.
network
low complexity
publiccms CWE-918
8.8
2024-07-09 CVE-2024-34689 Server-Side Request Forgery (SSRF) vulnerability in SAP Business Workflow and SAP Basis
WebFlow Services of SAP Business Workflow allows an authenticated attacker to enumerate accessible HTTP endpoints in the internal network by specially crafting HTTP requests.
network
low complexity
sap CWE-918
5.0
2024-07-08 CVE-2024-39699 Server-Side Request Forgery (SSRF) vulnerability in Monospace Directus
Directus is a real-time API and App dashboard for managing SQL database content.
network
low complexity
monospace CWE-918
5.0
2024-07-05 CVE-2024-29319 Server-Side Request Forgery (SSRF) vulnerability in Personal-Management-System Personal Management System 1.4.64
Volmarg Personal Management System 1.4.64 is vulnerable to SSRF (Server Side Request Forgery) via uploading a SVG file.
network
low complexity
personal-management-system CWE-918
critical
9.8
2024-07-05 CVE-2024-6524 Server-Side Request Forgery (SSRF) vulnerability in Shopxo
A vulnerability was found in ShopXO up to 6.1.0.
network
low complexity
shopxo CWE-918
8.8