Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Security Intel Hub 477— Search: SSRF×

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Clear
Examples: RCE · SSRF · GHSA · log4j
IBM Sterling Partner Engagement Manager SSRF Vulnerability (CVE-2022-22416) Advisory
www.ibm.com · 2025-11-07

### Key Information #### Vulnerability Overview - **CVE-ID**: CVE-2022-22416 - **Description**: IBM Sterling Partner Engagement Manager is affected by a Server-Side Request Forgery (SSRF) vulnerabilit…

Read more
Cisco Security Advisory: Multiple Vulnerabilities including RCE, DoS, and SSRF (CVE-2025-20333, etc.)
tools.cisco.com · 2025-11-06

### Critical Vulnerability Information - **Cisco Secure Firewall Adaptive Security Appliance Software and Secure Firewall Threat Defense Software VPN Web Server Remote Code Execution Vulnerability** -…

Read more
DataEase DB2 SSRF Vulnerability (CVE-2025-64163) with Exploit PoC
github.com · 2025-11-06

## DataEase DB2 SSRF Vulnerability ### Package - Maven: io.dataease (Maven) ### Affected Versions - <= 2.10.14 ### Patched Versions - 2.10.15 ### Severity - High ### CVE ID - CVE-2025-64163 ### Descri…

Read more
Nucleoid SSRF Vulnerability Analysis (CWE-918)
github.com · 2025-10-17

### Key Information #### Vulnerability Overview - **Type**: Server-Side Request Forgery (SSRF) - **Location**: Nucleoid `src/cluster.ts` - **Description**: The application constructs and sends outboun…

Read more
Mingyu O&M Audit System xmlrpc.sock SSRF to RCE (CVE-2023-7325)
www.vulncheck.com · 2025-10-31

## Critical Vulnerability Information ### Title Mingyu Operations and Maintenance Audit and Risk Control System xmlrpc.sock SSRF ### Severity Critical ### Release Date October 30, 2025 ### Affected Sc…

Read more
ThingsBoard < v4.2.1 SVG Image SSRF Vulnerability (CVE-2025-34282)
www.vulncheck.com · 2025-10-18

### Key Information - **Vulnerability Name**: ThingsBoard < v4.2.1 SVG Image SSRF - **Severity**: MEDIUM - **Date**: October 17, 2025 - **Affected Versions**: ThingsBoard < v4.2.1 - **CVE ID**: CVE-20…

Read more
Slims 9.3.0 SSRF Vulnerability Analysis (CVE-2025-61488)
github.com · 2025-10-21

### Key Information Summary #### Vulnerability Overview - **CVE ID**: CVE-2025-61488 - **Vulnerability Type**: Server-Side Request Forgery (SSRF) - **Affected Version**: Slims 9.3.0 (v1.0) #### Vulner…

Read more
Struts2 SSRF Vulnerability List (CVE-2022-37911/38011)
gitlab.com · 2025-10-15

From this webpage screenshot, the following key information about vulnerabilities can be obtained: - **Project Name**: REACME.md - **Vulnerability List**: - Contains vulnerability information for mult…

Read more
SSRF Vulnerability: Failure to Filter host.docker.internal and Internal IPs
github.com · 2025-10-15

### Key Information #### Description - **Vulnerability Type**: SSRF (Server-Side Request Forgery) - **Cause**: Failure to filter addresses other than `localhost` and `127.0.0.1`, including `host.docke…

Read more
Sonatype Nexus Repository 2 Remote Browser Plugin SSRF Vulnerability (CVE-2025-9868)
support.sonatype.com · 2025-10-09

### Key Information - **Vulnerability ID**: CVE-2025-9868 - **Affected Versions**: All Sonatype Nexus Repository Manager 2.x OSS/Pro versions - **Date**: October 8, 2025 - **Summary**: A vulnerability…

Read more
unmark v2.8.0 SSRF Vulnerability Analysis and POC
github.com · 2025-09-14

### Key Information #### Vulnerability Overview - **Vulnerability Type**: SSRF (Server-Side Request Forgery) - **Affected Software**: unmark v1.9.3 - **File**: application/controllers/Marks.php - **Ve…

Read more
AliasVault SSRF via Favicon Extraction (CVE-2025-59344) Advisory
github.com · 2025-09-20

### Critical Vulnerability Information #### Vulnerability Overview - **Type**: Server-Side Request Forgery (SSRF) via Favicon Extraction - **CVE ID**: CVE-2025-59344 - **CVSS v3 Base Metrics**: - Seve…

Read more
MagicBlack MacCMSv10 SSRF Vulnerability and POC Analysis
github.com · 2025-09-15

## Critical Vulnerability Information ### Vendor - **Vendor**: magicblack ### Product and Version - **Product**: MacCMSv10 - **Version**: v2025.1000.4050 ### Vulnerability Type - **Vulnerability**: SS…

Read more
ClipBucket 5.5.2 SSRF Vulnerability (CVE-2025-55911) Analysis and Fix
medium.com · 2025-09-20

### Key Information #### Vulnerability Overview - **CVE ID**: CVE-2025-55911 - **Vulnerability Type**: SSRF (Server-Side Request Forgery) - **Affected Version**: ClipBucket 5.5.2 Build #90 #### Vulner…

Read more
Accela Automation Platform CVE-2025-57644 RCE and SSRF Vulnerability Analysis
medium.com · 2025-09-21

### Key Information #### Vulnerability Overview - **CVE ID**: CVE-2025-57644 - **Vulnerability Type**: Remote Code Execution (RCE) and Server-Side Request Forgery (SSRF) - **Affected Product**: Accela…

Read more
Analysis of SSRF and AWS Metadata Leakage via Misconfigured CORS-anywhere
www.certik.com · 2025-09-26

### Key Information #### 1. Vulnerability Name - **CORS-anywhere**: The Dangers of Misconfigured Third-Party Software #### 2. Vulnerability Background - **Description**: CORS-anywhere is an open-sourc…

Read more
XWiki Office Viewer SSRF Vulnerability
jira.xwiki.org · 2025-09-11

### Key Information - **Vulnerability Type**: Server side request forgery (SSRF) - **Affected Versions**: 14.10 - **Fixed Versions**: 15.0-rc-1, ... - **Component**: Office Viewer - **Tags**: attack_d…

Read more
InstantCMS <=2.17.3 Blind SSRF via Package Installer (CVE-2025-59055)
github.com · 2025-09-13

### Critical Vulnerability Information #### Vulnerability Type - **Server-Side Request Forgery (SSRF) via package installer** #### Affected Versions - **InstantCMS <= 2.17.3** #### Fixed Version - **N…

Read more
Firecrawl SSRF Vulnerability (CVE-2025-57818) via Malicious Webhook
github.com · 2025-08-28

### Key Information #### Vulnerability Overview - **Vulnerability Type**: SSRF (Server-Side Request Forgery) via malicious webhook - **Severity**: High (7.4/10) - **CVE ID**: CVE-2025-57818 #### Affec…

Read more
Mautic SSRF via Webhook (CVE-2025-9821) Advisory
github.com · 2025-09-04

### Critical Vulnerability Information #### Vulnerability Overview - **Type**: SSRF (Server-Side Request Forgery) via webhook function - **CVE ID**: CVE-2025-9821 - **CVSS v3 Base Score**: 2.7/10 - **…

Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.