Weaknesses of type CWE-918

3,124 results

Falsificação de Solicitação no Servidor (SSRF)

O servidor web recupera conteúdo de uma URL fornecida pelo usuário sem validar adequadamente o destino. Isso permite que um atacante force o servidor a fazer requisições para hosts internos, serviços privados ou sistemas que não deveriam ser acessíveis, contornando controles de rede e autenticação.

Example

Uma aplicação oferece um proxy de imagens: recebe a URL 'http://exemplo.com/foto.jpg' e retorna o conteúdo. Um atacante envia 'http://localhost:8080/admin' ou 'http://192.168.1.100/dados-internos', forçando o servidor a acessar sistemas internos e exfiltrar dados sensíveis.

How to mitigate

Valide e faça whitelist de domínios/IPs permitidos antes de fazer a requisição; rejeite URLs locais, privadas (10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) e metadados (169.254.169.254); use DNS pinning e resoluções contínuas. Em clouds, restrinja acesso ao serviço de metadados via iptables ou IMDSv2.

CVE-2025-58641MEDIUMWordPress Exit Intent Popup Plugin <= 1.0.1 - Server Side Request Forgery (SSRF) VulnerabilityEPSS 0.2%CVE-2025-61916HIGHSpinnaker vulnerable to SSRF due to improper restrictions on http from user inputEPSS 0.2%CVE-2025-60181MEDIUMWordPress Silencesoft RSS Reader Plugin <= 0.6 - Server Side Request Forgery (SSRF) VulnerabilityEPSS 0.2%CVE-2026-84721MEDIUMAutomation-controller: automation-controller: email notification backend allows ssrf via user-controlled smtp host/port (internal port-scan oracle, smtp password exfil)EPSS 0.2%CVE-2025-8055MEDIUMSSRF vulnerability have been discovered in OpenText™ XM FaxEPSS 0.2%CVE-2026-54430MEDIUMServer-Site Request Forgery in liboauth2EPSS 0.2%CVE-2026-49262LOWAimeos Pagible CMS vulnerable to Server Side Request Forgery (SSRF) via DNS rebinding in admin proxyEPSS 0.2%CVE-2025-29720MEDIUMDify v1.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component controllers.console.remote_files.RemoteFileUploadEPSS 0.2%CVE-2025-60175MEDIUMWordPress PopAd Plugin <= 1.0.4 - Server Side Request Forgery (SSRF) VulnerabilityEPSS 0.2%CVE-2025-69014MEDIUMWordPress Youzify plugin <= 1.3.7 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.2%CVE-2025-59138MEDIUMWordPress Genemy theme <= 1.6.6 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.2%CVE-2025-68500MEDIUMWordPress Prime Slider – Addons For Elementor plugin <= 4.0.10 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.2%CVE-2025-49877MEDIUMWordPress ProfileGrid plugin <= 5.9.5.2 - Server Side Request Forgery (SSRF) VulnerabilityEPSS 0.2%CVE-2026-12566LOWSSRF via unvalidated WWW-Authenticate realm in docker_pull moduleEPSS 0.2%CVE-2025-7622MEDIUMDuring an internal security assessment, a Server-Side Request Forgery (SSRF) vulnerability that allowed an authenticated attacker to access EPSS 0.2%CVE-2026-58441MEDIUMSSRF in restore-repo via unsanitized pull_request.yml Head.CloneURLEPSS 0.2%CVE-2026-2455MEDIUMSSRF bypass via IPv4-mapped IPv6 literalsEPSS 0.2%CVE-2026-47076MEDIUMSSRF allowlist bypass via percent-encoded host in hackneyEPSS 0.2%CVE-2026-22482MEDIUMWordPress IMGspider plugin <= 2.3.12 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.2%CVE-2025-12832MEDIUMIBM InfoSphere Information Server Server-Side Request ForgeryEPSS 0.2%