← back
CVE-2025-48739

CVE-2025-48739

CVSS 4.6 MEDIUMEPSS 0.4%CWE-918
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.6EPSS 0.4%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
23 May 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A Server-Side Request Forgery (SSRF) vulnerability in StrangeBee TheHive 5.2.0 before 5.2.16, 5.3.0 before 5.3.11, 5.4.0 before 5.4.10, and 5.5.0 before 5.5.1 allows remote authenticated attackers with admin permissions (allowing them to access specific API endpoints) to manipulate URLs to direct requests to unexpected hosts or ports. This allows the attacker to use a TheHive server as a proxy to reach internal or otherwise restricted resources. This could be exploited to access other servers on the internal network.
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:A/VC:L/VI:N/VA:N/SC:L/SI:L/SA:L
Affected products
StrangeBee · TheHive

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →