CVE-2026-80464: fallo de gravedad media en HAVELSAN Inc. Sef - AI Chatbot Platform
API Tool Runner SSRF in HAVELSAN's Sef - AI Chatbot Platform
Publicada el
13Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 4.9epss 0.3%
probabilidad de explotación
0.3%top 82% de las CVE
explotación observada
noninguna fuente lo reporta
Server-Side request forgery (SSRF) vulnerability in HAVELSAN Inc. Sef - AI Chatbot Platform allows Server Side Request Forgery.
This issue affects Sef - AI Chatbot Platform: before 2.1. NOTE: The vendor was contacted and it was learned that the product is not supported.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Productos afectados
HAVELSAN Inc. · Sef - AI Chatbot PlatformCVEs relacionadas — HAVELSAN Inc. Sef - AI Chatbot Platform
En el mismo producto, de las más peligrosas a las menos.
CVE-2026-80298HIGHSQL Injection in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.3%CVE-2026-80337MEDIUMUnauthorized Cross-Chatbot Tool Invocation in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.2%CVE-2026-80443HIGHInsecure TLS Certificate Validation in API Tool Runner in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.2%