Weaknesses of type CWE-918

3,091 results

Falsificação de Solicitação no Servidor (SSRF)

O servidor web recupera conteúdo de uma URL fornecida pelo usuário sem validar adequadamente o destino. Isso permite que um atacante force o servidor a fazer requisições para hosts internos, serviços privados ou sistemas que não deveriam ser acessíveis, contornando controles de rede e autenticação.

Example

Uma aplicação oferece um proxy de imagens: recebe a URL 'http://exemplo.com/foto.jpg' e retorna o conteúdo. Um atacante envia 'http://localhost:8080/admin' ou 'http://192.168.1.100/dados-internos', forçando o servidor a acessar sistemas internos e exfiltrar dados sensíveis.

How to mitigate

Valide e faça whitelist de domínios/IPs permitidos antes de fazer a requisição; rejeite URLs locais, privadas (10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) e metadados (169.254.169.254); use DNS pinning e resoluções contínuas. Em clouds, restrinja acesso ao serviço de metadados via iptables ou IMDSv2.

CVE-2026-58314HIGHTwo SSRF findings in Gitea 1.26.2EPSS 0.4%CVE-2024-5526HIGHGrafana OnCall is an easy-to-use on-call management tool that will help reduce toil in on-call management through simpler workflows and inteEPSS 0.4%CVE-2026-31941HIGHServer-Side Request Forgery (SSRF) in Chamilo LMSEPSS 0.4%CVE-2026-1062MEDIUMxiweicheng TMS HtmlUtil.java summary server-side request forgeryEPSS 0.4%CVE-2026-85179HIGHLabel Studio through 1.23.0 SSRF via Unvalidated Webhook URLEPSS 0.4%CVE-2026-79788HIGHDradis Community Edition 5.1.0 through 5.2.0 Server-Side Request Forgery via Unrestricted AI Provider AddressEPSS 0.4%CVE-2026-92602HIGHTDuck survey form through 5.3 Server-Side Request Forgery via Unvalidated Webhook URLEPSS 0.4%CVE-2026-80350HIGHOneUptime before 12.0.7 Server-Side Request Forgery via IPv4-Mapped IPv6 Webhook URLEPSS 0.4%CVE-2026-44117MEDIUMOpenClaw < 2026.4.20 - Server-Side Request Forgery in QQBot Direct Media UploadEPSS 0.4%CVE-2026-41060HIGHAVideo's SSRF via same-domain hostname with alternate port bypasses isSSRFSafeURLEPSS 0.4%CVE-2026-44797HIGHNautobot: Webhook definitions could be used for server-side request forgery (SSRF)EPSS 0.4%CVE-2026-90486MEDIUMopenstatusHQ openstatus resolve-custom-domain-rewrite.ts server-side request forgeryEPSS 0.4%CVE-2026-41297MEDIUMOpenClaw < 2026.3.31 - Server-Side Request Forgery via Marketplace Plugin Download RedirectEPSS 0.4%CVE-2026-33226HIGHBudibase Unrestricted Server-Side Request Forgery (SSRF) via REST Datasource Query PreviewEPSS 0.4%CVE-2026-12774MEDIUMBerriAI litellm MCP Server Connection Testing rest_endpoints.py _execute_with_mcp_client server-side request forgeryEPSS 0.4%CVE-2026-12798MEDIUMBerriAI litellm MCP OpenAPI Spec Loader openapi_to_mcp_generator.py load_openapi_spec_async server-side request forgeryEPSS 0.4%CVE-2026-63730MEDIUMHyperDX < 2.31.0 SSRF via Webhook Test EndpointEPSS 0.4%CVE-2026-5618MEDIUMkalcaddle kodbox shareMake/shareCheck server-side request forgeryEPSS 0.4%CVE-2025-27217CRITICALA Server-Side Request Forgery (SSRF) in the UISP Application may allow a malicious actor with certain permissions to make requests outside oEPSS 0.4%CVE-2026-91966MEDIUMAVideo through 29.0 Unauthenticated SSRF via Host HeaderEPSS 0.4%