Weaknesses of type CWE-918

3,105 results

Falsificação de Solicitação no Servidor (SSRF)

O servidor web recupera conteúdo de uma URL fornecida pelo usuário sem validar adequadamente o destino. Isso permite que um atacante force o servidor a fazer requisições para hosts internos, serviços privados ou sistemas que não deveriam ser acessíveis, contornando controles de rede e autenticação.

Example

Uma aplicação oferece um proxy de imagens: recebe a URL 'http://exemplo.com/foto.jpg' e retorna o conteúdo. Um atacante envia 'http://localhost:8080/admin' ou 'http://192.168.1.100/dados-internos', forçando o servidor a acessar sistemas internos e exfiltrar dados sensíveis.

How to mitigate

Valide e faça whitelist de domínios/IPs permitidos antes de fazer a requisição; rejeite URLs locais, privadas (10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) e metadados (169.254.169.254); use DNS pinning e resoluções contínuas. Em clouds, restrinja acesso ao serviço de metadados via iptables ou IMDSv2.

CVE-2025-6142MEDIUMIntera InHire server-side request forgeryEPSS 0.3%CVE-2026-46561MEDIUMpyLoad: SSRF via HTTP Redirect Bypass in parse_urls APIEPSS 0.3%CVE-2026-62216LOWOpenClaw 2026.4.20 < 2026.5.28 Policy Bypass via Media UploadEPSS 0.3%CVE-2026-77069LOWn8n before 1.123.69 SSRF Protection Bypass via OAuth2EPSS 0.3%CVE-2025-11128MEDIUMFeedzy RSS Feeds Lite <= 5.1.0 - Authenticated (Subscriber+) Server-Side Request ForgeryEPSS 0.3%CVE-2026-40516HIGHOpenHarness SSRF via web_fetch and web_searchEPSS 0.3%CVE-2025-66201HIGHLibreChat is Vulnerable to Server-Side Request Forgery (SSRF) in Actions CapabilityEPSS 0.3%CVE-2024-32454MEDIUMWordPress Wappointment plugin <= 2.6.0 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.3%CVE-2026-76086HIGHFormie: Integration form-settings action allows SSRF and exfiltration of stored integration credentialsEPSS 0.3%CVE-2025-15098MEDIUMYunaiV yudao-cloud Business Process Management BpmSyncHttpRequestTrigger server-side request forgeryEPSS 0.3%CVE-2024-33627MEDIUMWordPress AGCA – Custom Dashboard & Login Page plugin <= 7.2.2 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.3%CVE-2026-18730HIGHServer-side request forgery vulnerability in GitHub Enterprise Server Manage API leaked a replayable gateway-agent bearer tokenEPSS 0.3%CVE-2025-47548MEDIUMWordPress Wbcom Designs - Activity Link Preview For BuddyPress plugin <= 1.4.4 - Server Side Request Forgery (SSRF) VulnerabilityEPSS 0.3%CVE-2024-25181CRITICALA critical vulnerability has been identified in givanz VvvebJs 1.7.2, which allows both Server-Side Request Forgery (SSRF) and arbitrary filEPSS 0.3%CVE-2025-33203HIGHNVIDIA NeMo Agent Toolkit UI for Web contains a vulnerability in the chat API endpoint where an attacker may cause a Server-Side Request ForEPSS 0.3%CVE-2026-81207HIGHDataStage on Cloud Pak for Data has several vulnerabilities due to open source softwareEPSS 0.3%CVE-2026-85528MEDIUMSnowflake JDBC Driver auto-configuration account validation permits credential redirectionEPSS 0.3%CVE-2026-48153HIGHBudibase: SSRF via OAuth2 token endpoint URL reaches internal hosts and cloud metadataEPSS 0.3%CVE-2026-33294MEDIUMAVideo has SSRF in BulkEmbed Thumbnail Fetch that Allows Reading Internal Network ResourcesEPSS 0.3%CVE-2026-35527MEDIUMIncus blind SSRF via image import preflight HEAD requestEPSS 0.3%