Vulnerabilities > Server-Side Request Forgery (SSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-07-26 CVE-2024-41812 Server-Side Request Forgery (SSRF) vulnerability in Txtdot
txtdot is an HTTP proxy that parses only text, links, and pictures from pages, removing ads and heavy scripts.
network
low complexity
txtdot CWE-918
7.5
2024-07-26 CVE-2024-41813 Server-Side Request Forgery (SSRF) vulnerability in Txtdot
txtdot is an HTTP proxy that parses only text, links, and pictures from pages, removing ads and heavy scripts.
network
low complexity
txtdot CWE-918
7.5
2024-07-12 CVE-2024-40543 Server-Side Request Forgery (SSRF) vulnerability in Publiccms
PublicCMS v4.0.202302.e was discovered to contain a Server-Side Request Forgery (SSRF) via the component /admin/ueditor?action=catchimage.
network
low complexity
publiccms CWE-918
8.8
2024-07-12 CVE-2024-40544 Server-Side Request Forgery (SSRF) vulnerability in Publiccms
PublicCMS v4.0.202302.e was discovered to contain a Server-Side Request Forgery (SSRF) via the component /admin/#maintenance_sysTask/edit.
network
low complexity
publiccms CWE-918
8.8
2024-07-09 CVE-2024-34689 Server-Side Request Forgery (SSRF) vulnerability in SAP Business Workflow and SAP Basis
WebFlow Services of SAP Business Workflow allows an authenticated attacker to enumerate accessible HTTP endpoints in the internal network by specially crafting HTTP requests.
network
low complexity
sap CWE-918
5.0
2024-07-08 CVE-2024-39699 Server-Side Request Forgery (SSRF) vulnerability in Monospace Directus
Directus is a real-time API and App dashboard for managing SQL database content.
network
low complexity
monospace CWE-918
5.0
2024-07-05 CVE-2024-29319 Server-Side Request Forgery (SSRF) vulnerability in Personal-Management-System Personal Management System 1.4.64
Volmarg Personal Management System 1.4.64 is vulnerable to SSRF (Server Side Request Forgery) via uploading a SVG file.
network
low complexity
personal-management-system CWE-918
critical
9.8
2024-07-05 CVE-2024-6524 Server-Side Request Forgery (SSRF) vulnerability in Shopxo
A vulnerability was found in ShopXO up to 6.1.0.
network
low complexity
shopxo CWE-918
8.8
2024-07-03 CVE-2024-37157 Server-Side Request Forgery (SSRF) vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse CWE-918
5.3
2024-06-28 CVE-2024-5736 Server-Side Request Forgery (SSRF) vulnerability in Admiror-Design-Studio Admirorframes
Server Side Request Forgery (SSRF) vulnerability in AdmirorFrames Joomla! extension in afGdStream.php script allows to access local files or server pages available only from localhost. This issue affects AdmirorFrames: before 5.0.
network
low complexity
admiror-design-studio CWE-918
7.5