Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-55160— Authenticated Server-Side Request Forgery (SSRF) via feed URL in Stringer

Quick assessment

Affected
stringer-rss stringer
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Stringer 是一款自托管的“反社交”RSS 阅读器。在提交 75cb095 之前,存在一个无限制的服务端请求伪造(SSRF)漏洞,该漏洞允许任何已认证用户强制 Stringer 服务器向内部网络、本地主机服务以及云元数据端点(例如 AWS IMDS 169.254.169.254)发送任意的 HTTP/HTTPS 请求。当启用自助注册功能(Setting::UserSignup)时,即使权限较低的注册用户也能利用此漏洞扫描内部服务或窃取云 IAM 凭证。该问题已通过提交 75cb095 进行修复。

CVSS 7.6 · High

Affected Version Matrix 1

VendorProduct Version RangeStatus
stringer-rss stringer < 75cb0955919a362ac49d23c8a14892d0f59ea1c4 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-55160

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Authenticated Server-Side Request Forgery (SSRF) via feed URL in Stringer
Source: CVE Program / CVE List V5
Vulnerability Description
Stringer is a self-hosted, anti-social RSS reader. Prior to commit 75cb095, an unrestricted Server-Side Request Forgery (SSRF) vulnerability allows any authenticated user to force the Stringer server to send arbitrary HTTP/HTTPS requests to internal networks, localhost services, and cloud metadata endpoints (e.g. AWS IMDS 169.254.169.254). When self-service signup is enabled (Setting::UserSignup), even a low-privileged registered user can exploit this to scan internal services or steal cloud IAM credentials. This issue has been patched via commit 75cb095.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
Source: CVE Program / CVE List V5
Vulnerability Type
服务端请求伪造(SSRF)
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
stringer-rss stringer < 75cb0955919a362ac49d23c8a14892d0f59ea1c4 -

II. Public POCs for CVE-2026-55160

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-55160

请登录查看更多情报信息。

Other References for CVE-2026-55160 (3)

IV. Related Vulnerabilities

V. Comments for CVE-2026-55160

No comments yet


Leave a comment