Vulnerabilities > Server-Side Request Forgery (SSRF)

DATE CVE VULNERABILITY TITLE RISK
2023-12-22 CVE-2023-50259 Server-Side Request Forgery (SSRF) vulnerability in Pymedusa Medusa
Medusa is an automatic video library manager for TV shows.
network
low complexity
pymedusa CWE-918
5.3
2023-12-21 CVE-2023-7037 Server-Side Request Forgery (SSRF) vulnerability in Automad
A vulnerability was found in automad up to 1.10.9.
network
low complexity
automad CWE-918
8.8
2023-12-20 CVE-2023-6974 Server-Side Request Forgery (SSRF) vulnerability in Lfprojects Mlflow
A malicious user could use this issue to access internal HTTP(s) servers and in the worst case (ie: aws instance) it could be abuse to get a remote code execution on the victim machine.
network
low complexity
lfprojects CWE-918
critical
9.8
2023-12-19 CVE-2023-46262 Server-Side Request Forgery (SSRF) vulnerability in Ivanti Avalanche 6.3.2
An unauthenticated attacked could send a specifically crafted web request causing a Server-Side Request Forgery (SSRF) in Ivanti Avalanche Remote Control server.
network
low complexity
ivanti CWE-918
7.5
2023-12-18 CVE-2022-40312 Server-Side Request Forgery (SSRF) vulnerability in Givewp
Server-Side Request Forgery (SSRF) vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform.This issue affects GiveWP – Donation Plugin and Fundraising Platform: from n/a through 2.25.1.
network
low complexity
givewp CWE-918
6.5
2023-12-16 CVE-2023-6852 Server-Side Request Forgery (SSRF) vulnerability in Kodcloud Kodexplorer
A vulnerability classified as critical has been found in kalcaddle KodExplorer up to 4.51.03.
network
low complexity
kodcloud CWE-918
critical
9.8
2023-12-16 CVE-2023-6853 Server-Side Request Forgery (SSRF) vulnerability in Kodcloud Kodexplorer
A vulnerability classified as critical was found in kalcaddle KodExplorer up to 4.51.03.
network
low complexity
kodcloud CWE-918
critical
9.8
2023-12-16 CVE-2023-6849 Server-Side Request Forgery (SSRF) vulnerability in Kodcloud Kodbox
A vulnerability was found in kalcaddle kodbox up to 1.48.
network
low complexity
kodcloud CWE-918
critical
9.8
2023-12-15 CVE-2023-50266 Server-Side Request Forgery (SSRF) vulnerability in Bazarr 1.2.4
Bazarr manages and downloads subtitles.
network
low complexity
bazarr CWE-918
5.3
2023-12-15 CVE-2023-49159 Server-Side Request Forgery (SSRF) vulnerability in Sean-Barton Commentluv
Server-Side Request Forgery (SSRF) vulnerability in Elegant Digital Solutions CommentLuv.This issue affects CommentLuv: from n/a through 3.0.4.
network
low complexity
sean-barton CWE-918
7.5