Falhas do tipo CWE-918

2.157 resultados
CVE-2026-25545MEDIUMAstro has Full-Read SSRF in error rendering via Host: header injectionEPSS 1.4%CVE-2021-32663HIGHUnauthorized setup leads to SSRF in Combodo/iTopEPSS 1.4%CVE-2022-1239HubSpot < 8.8.15 - Contributor+ Blind SSRFEPSS 1.4%CVE-2021-32639HIGHServer-Side Request Forgery (SSRF) in emissary:emissaryEPSS 1.4%CVE-2020-8138A missing check for IPv4 nested inside IPv6 in Nextcloud server < 17.0.1, < 16.0.7, and < 15.0.14 allowed a Server-Side Request Forgery (SSREPSS 1.4%CVE-2022-21215CRITICALAirspan Networks Mimosa Server-Side Request Forgery (SSRF)EPSS 1.4%CVE-2022-35949MEDIUM`undici.request` vulnerable to SSRF using absolute URL on `pathname`EPSS 1.4%CVE-2023-6199MEDIUMBook Stack v23.10.2 - LFR via Blind SSRFEPSS 1.4%CVE-2017-12071Server-side request forgery (SSRF) vulnerability in file_upload.php in Synology Photo Station before 6.7.4-3433 and 6.3-2968 allows remote aEPSS 1.4%CVE-2021-3552MEDIUMInsufficient validation on regular expression in EPPUpdateService config file (VA-9825)EPSS 1.4%CVE-2022-42343MEDIUMAdobe Campaign Classic Server-Side Request Forgery Arbitrary file system readEPSS 1.4%CVE-2023-3188HIGHServer-Side Request Forgery (SSRF) in owncast/owncastEPSS 1.4%CVE-2022-45152CRITICALA blind Server-Side Request Forgery (SSRF) vulnerability was found in Moodle. This flaw exists due to insufficient validation of user-suppliEPSS 1.4%CVE-2021-28627MEDIUMAdobe Experience Manager Server-side Request Forgery could lead to Security feature bypassEPSS 1.3%CVE-2021-39339MEDIUMTelefication <= 1.8.0 Open Proxy and Server-Side Request ForgeryEPSS 1.3%CVE-2022-1037EXMAGE < 1.0.7 - Admin+ Blind SSRFEPSS 1.3%CVE-2020-8135The uppy npm package < 1.9.3 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attacker to scan local or EPSS 1.3%CVE-2022-0990CRITICALServer-Side Request Forgery (SSRF) in janeczku/calibre-webEPSS 1.3%CVE-2020-8118An authenticated server-side request forgery in Nextcloud server 16.0.1 allowed to detect local and remote services when adding a new subscrEPSS 1.3%CVE-2021-1272HIGHCisco Data Center Network Manager Server-Side Request Forgery VulnerabilityEPSS 1.3%