CVE-2026-80464: falha de média gravidade em HAVELSAN Inc. Sef - AI Chatbot Platform
API Tool Runner SSRF in HAVELSAN's Sef - AI Chatbot Platform
Publicada em
13Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackcvss 4.9epss 0.3%
probabilidade de exploração
0.3%top 82% das CVEs
exploração observada
nãonenhuma fonte reporta
Server-Side request forgery (SSRF) vulnerability in HAVELSAN Inc. Sef - AI Chatbot Platform allows Server Side Request Forgery.
This issue affects Sef - AI Chatbot Platform: before 2.1. NOTE: The vendor was contacted and it was learned that the product is not supported.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Produtos afetados
HAVELSAN Inc. · Sef - AI Chatbot PlatformCVEs relacionadas — HAVELSAN Inc. Sef - AI Chatbot Platform
No mesmo produto, das mais perigosas para as menos.
CVE-2026-80298HIGHSQL Injection in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.3%CVE-2026-80337MEDIUMUnauthorized Cross-Chatbot Tool Invocation in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.2%CVE-2026-80443HIGHInsecure TLS Certificate Validation in API Tool Runner in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.2%