在多个 AWX 通知后端中发现了服务器端请求伪造(SSRF)漏洞。Webhook、Mattermost、Rocket.Chat 和 Grafana 通知后端将通知模板中配置的 URL 直接用作 HTTP 请求的目标地址,而未对该目标地址是否与私有、回环(loopback)或保留 IP 地址范围相匹配进行验证。组织中的通知管理员可以创建指向内部网络或回环地址的通知模板,从而导致 AWX 控制节点向那些无法从外部访问的服务发起 HTTP 请求。 此外,Webhook 通知后端会跟随 HTTP 重定向,并且在主机发生变更
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | 0:4.6.32-1.el8ap ~ * |
cpe:/a:redhat:ansible_automation_platform:2.5::el8
|
|
| Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 9 | 0:4.6.32-1.el9ap ~ * |
cpe:/a:redhat:ansible_automation_platform:2.5::el8
|
|
| Red Hat | Red Hat Ansible Automation Platform 2.6 for RHEL 9 | 0:4.7.16-1.el9ap ~ * |
cpe:/a:redhat:ansible_automation_platform:2.6::el10
|
|
| Red Hat | Red Hat Ansible Automation Platform 2 | - |
cpe:/a:redhat:ansible_automation_platform:2
|
|
| Red Hat | Red Hat Ansible Automation Platform 2 | - |
cpe:/a:redhat:ansible_automation_platform:2
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-78376 | 8.8 HIGH | Webkitgtk: use-after-free of jscvalue function parameters |
| CVE-2026-71364 | 7.2 HIGH | Awx: project archive extraction allows path traversal file writes |
| CVE-2026-19685 | 7.1 HIGH | Networkmanager: networkmanager: 802-1x ca-path and phase2-ca-path bypass private_user rest |
| CVE-2026-78465 | 7.0 HIGH | Gimp: integer overflow in pcx loader (planes=4) leads to heap overflow on 32-bit |
| CVE-2026-78367 | 7.0 HIGH | Rpm: rpmbuild gettarspec() crafted tar member name → macro injection |
| CVE-2026-78323 | 6.5 MEDIUM | Jss: jss: jsstrustmanager does not verify nss trust flags on ca certificates |
| CVE-2026-78475 | 6.1 MEDIUM | Gimp: unbounded stack vla and 21-byte stack over-read in pix (esm) loader |
| CVE-2026-17113 | 6.0 MEDIUM | Cri-o: cri-o: unvalidated image env var causes daemon crash |
No comments yet