Falhas do tipo CWE-918

2.169 resultados
CVE-2023-3238MEDIUMOTCMS server-side request forgeryEPSS 0.7%CVE-2018-17452CRITICALAn issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is SEPSS 0.7%CVE-2023-47116MEDIUMLabel Studio SSRF on Import Bypassing `SSRF_PROTECTION_ENABLED` ProtectionsEPSS 0.7%CVE-2025-34228HIGHVasion Print (formerly PrinterLogic) SSRF via Lexmark update.phpEPSS 0.7%CVE-2022-24789HIGH Deserialization of untrusted data in C1 CMS.EPSS 0.7%CVE-2022-29180MEDIUMCharm vulnerable to server-side request forgery (SSRF)EPSS 0.7%CVE-2023-41055HIGHLibreY Server-Side Request Forgery (SSRF) vulnerability via wikipedia_language cookieEPSS 0.7%CVE-2023-27586CRITICALCairoSVG improperly processes SVG files loaded from external resourcesEPSS 0.7%CVE-2023-37262CRITICALCC: Tweaked SSRF to Cloud Services Metadata Services not Blocked by DefaultEPSS 0.7%CVE-2023-46502CRITICALAn issue in openCRX v.5.2.2 allows a remote attacker to read internal files and execute server side request forgery attack via insecure DocuEPSS 0.7%CVE-2024-33832MEDIUMOneNav v0.9.35-20240318 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /index.php?c=api&method=get_link_inEPSS 0.7%CVE-2024-25864CRITICALServer Side Request Forgery (SSRF) vulnerability in Friendica versions after v.2023.12, allows a remote attacker to execute arbitrary code aEPSS 0.7%CVE-2025-54234LOWColdFusion | Server-Side Request Forgery (SSRF) (CWE-918)EPSS 0.7%CVE-2023-41054HIGHLibreY Server-Side Request Forgery (SSRF) vulnerability in image_proxy.phpEPSS 0.7%CVE-2024-41118HIGHstreamlit-geospatial blind SSRF in pages/7_📦_Web_Map_Service.pyEPSS 0.7%CVE-2026-34084CRITICALPhpSpreadsheet SSRF and RCE via PHP stream wrappers in IOFactory::loadEPSS 0.7%CVE-2024-29190HIGHMobSF SSRF Vulnerability on assetlinks_check(act_name, well_knowns)EPSS 0.7%CVE-2024-21642HIGHD-Tale server-side request forgery through Web uploadsEPSS 0.7%CVE-2023-48240CRITICALXWiki Platform sends cookies to external images in rendered diff and is vulnerable to server side request forgeryEPSS 0.7%CVE-2023-7037MEDIUMautomad FileController.php import server-side request forgeryEPSS 0.7%