Weaknesses of type CWE-918

3,105 results

Falsificação de Solicitação no Servidor (SSRF)

O servidor web recupera conteúdo de uma URL fornecida pelo usuário sem validar adequadamente o destino. Isso permite que um atacante force o servidor a fazer requisições para hosts internos, serviços privados ou sistemas que não deveriam ser acessíveis, contornando controles de rede e autenticação.

Example

Uma aplicação oferece um proxy de imagens: recebe a URL 'http://exemplo.com/foto.jpg' e retorna o conteúdo. Um atacante envia 'http://localhost:8080/admin' ou 'http://192.168.1.100/dados-internos', forçando o servidor a acessar sistemas internos e exfiltrar dados sensíveis.

How to mitigate

Valide e faça whitelist de domínios/IPs permitidos antes de fazer a requisição; rejeite URLs locais, privadas (10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) e metadados (169.254.169.254); use DNS pinning e resoluções contínuas. Em clouds, restrinja acesso ao serviço de metadados via iptables ou IMDSv2.

CVE-2026-1641MEDIUMWow Elements Addons for Elementor <= 1.11.2 - Authenticated (Contributor+) Server-Side Request Forgery via Changelog File SettingEPSS 0.3%CVE-2025-53457MEDIUMWordPress SEO Backlink Monitor plugin <= 1.8.0 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.3%CVE-2025-12375MEDIUMPrintful Integration for WooCommerce <= 2.2.11 - Authenticated (Contributor+) Server-Side Request ForgeryEPSS 0.3%CVE-2026-71250MEDIUMFirefly III - Webhook URL Validation Explicitly Allows Loopback and Is Bypassable via DNS RebindingEPSS 0.3%CVE-2024-53738MEDIUMWordPress Asset CleanUp: Page Speed Booster plugin <=1.3.9.8 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.3%CVE-2025-14627MEDIUMWP Import – Ultimate CSV XML Importer for WordPress <= 7.35 - Authenticated (Contributor+) Server-Side Request Forgery via Bitly Shortlink BypassEPSS 0.3%CVE-2025-50228CRITICALJizhicms v2.5.4 is vulnerable to Server-Side Request Forgery (SSRF) in User Evaluation, Message, and Comment modules.EPSS 0.3%CVE-2024-33629MEDIUMWordPress Auto Featured Image (Auto Post Thumbnail) plugin <= 4.0.0 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.3%CVE-2026-17565HIGHAnimation Addons for Elementor < 2.7.2 - Unauthenticated Server-Side Request ForgeryEPSS 0.3%CVE-2025-14793MEDIUMDK PDF – WordPress PDF Generator <= 2.3.0 - Authenticated (Author+) Server-Side Request ForgeryEPSS 0.3%CVE-2026-54794HIGHDell OpenManage Enterprise, versions prior to 4.7.0, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attackeEPSS 0.3%CVE-2025-27600MEDIUMFastGPT SSRFEPSS 0.3%CVE-2026-12986HIGHA critical vulnerability in Admin GUI in Payara Server Full 4.x, 5.x, 6.x, 7.x, 7.2026.x, 6.2025.x, 6.2024.x on All platforms that allows thEPSS 0.3%CVE-2026-42336MEDIUMMaxKB: SSRF Bypass via DNS Rebinding in MaxKB OSS URL FetchEPSS 0.3%CVE-2026-33126MEDIUMFrigate has SSRF vulnerability in /ffprobe endpointEPSS 0.3%CVE-2026-39922MEDIUMGeoNode SSRF via Service RegistrationEPSS 0.3%CVE-2024-54197HIGHServer-Side Request Forgery in SAP NetWeaver Administrator (System Overview)EPSS 0.3%CVE-2025-70027HIGHAn issue pertaining to CWE-918: Server-Side Request Forgery was discovered in Sunbird-Ed SunbirdEd-portal v1.13.4. This allows attackers to EPSS 0.3%CVE-2025-8013LOWQuttera Web Malware Scanner <= 3.5.1.41 - Authenticated (Administrator+) Server-Side Request ForgeryEPSS 0.3%CVE-2024-38728HIGHWordPress Seraphinite Post .DOCX Source plugin <= 2.16.9 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.3%