Fallos del tipo CWE-918

2169 resultados
CVE-2025-59775HIGHApache HTTP Server: NTLM Leakage on Windows through UNC SSRFEPSS 0.8%CVE-2025-34225HIGHVasion Print (formerly PrinterLogic) SSRF via console_release DirectoryEPSS 0.8%CVE-2021-34811MEDIUMServer-Side Request Forgery (SSRF) vulnerability in task management component in Synology Download Station before 3.8.16-3566 allows remote EPSS 0.8%CVE-2023-6852MEDIUMkalcaddle KodExplorer app.php server-side request forgeryEPSS 0.8%CVE-2024-45119MEDIUMAdobe Commerce | Server-Side Request Forgery (SSRF) (CWE-918)EPSS 0.8%CVE-2025-27152HIGHPossible SSRF and Credential Leakage via Absolute URL in axios RequestsEPSS 0.8%CVE-2022-22993HIGHLimited Server-Side Request Forgery vulnerability on Western Digital My Cloud devices.EPSS 0.8%CVE-2026-21859MEDIUMMailpit Proxy Endpoint is Vulnerable to Server-Side Request Forgery (SSRF)EPSS 0.8%CVE-2022-4335MEDIUMA blind SSRF vulnerability was identified in all versions of GitLab EE prior to 15.4.6, 15.5 prior to 15.5.5, and 15.6 prior to 15.6.1 whichEPSS 0.8%CVE-2024-36471HIGHApache Allura: sensitive information exposure via DNS rebindingEPSS 0.8%CVE-2022-44730Apache XML Graphics Batik: Information disclosure vulnerabilityEPSS 0.7%CVE-2022-36376MEDIUMWordPress Rank Math SEO plugin <= 1.0.95 - Server-Side Request Forgery (SSRF) vulnerabilityEPSS 0.7%CVE-2024-48590CRITICALInflectra SpiraTeam 7.2.00 is vulnerable to Server-Side Request Forgery (SSRF) via the NewsReaderService. This allows an attacker to escalatEPSS 0.7%CVE-2023-1634MEDIUMOTCMS URL Parameter info_deal.php UseCurl server-side request forgeryEPSS 0.7%CVE-2025-54370HIGHPhpSpreadsheet vulnerable to SSRF when reading and displaying a processed HTML document in the browserEPSS 0.7%CVE-2022-38212HIGHServer Side Request Forgery (SSRF) vulnerability in Portal for ArcGIS (10.8.1 and 10.7.1 only)EPSS 0.7%CVE-2022-38203HIGHThe allowedProxyHosts property is not fully honored in ArcGIS Enterprise (10.8.1 and 10.7.1 only)EPSS 0.7%CVE-2022-39211LOWServer-Side Request Forgery (SSRF) via potential filter bypass in Nextcloud ServerEPSS 0.7%CVE-2026-26222CRITICALDocLink .NET Remoting Unauthenticated Arbitrary File Read/Write RCEEPSS 0.7%CVE-2024-31979HIGHApache StreamPipes: Possibility of SSRF in pipeline element installation processEPSS 0.7%