CWE-918
MITRE ↗Server-Side Request Forgery (SSRF)
LangChain before 0.0.317 allows SSRF via document_loaders/recursive_url_loader.py because crawling can proceed from an e
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The WMS
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The OGC
FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Prior to version 1.5.10, a server-si
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Server Side Request Forgery via the get_remote_conte
The WP Remote Users Sync plugin for WordPress is vulnerable to Server Side Request Forgery via the 'notify_ping_remote'
LibreY is a fork of LibreX, a framework-less and javascript-free privacy respecting meta search engine. LibreY is subjec
Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in runtime en
ONLYOFFICE all versions as of 2021-11-08 is vulnerable to Server-Side Request Forgery (SSRF). The document editor servic
Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache Fineract. Authorized users with li
Microsoft SharePoint Server Spoofing Vulnerability
Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to a Server-Side Request F
Apache Airflow, in versions prior to 2.7.0, contains a security vulnerability that can be exploited by an authenticated
FoodCoopShop is open source software for food coops and local shops. Versions starting with 3.2.0 prior to 3.6.1 are vul
Audiobookshelf is a self-hosted audiobook and podcast server. In versions 2.4.3 and prior, users with the update permiss
RHACM: unauthenticated SSRF in console API endpoint. A Server-Side Request Forgery (SSRF) vulnerability was found in the
Local File Inclusion vulnerability in Midori-global Better PDF Exporter for Jira Server and Jira Data Center v.10.3.0 an
Microsoft Exchange Server Information Disclosure Vulnerability
A Server-Side Request Forgery (SSRF) in Rocket TRUfusion Portal v7.9.2.1 allows remote attackers to gain access to sensi
Paranoidhttp before 0.3.0 allows SSRF because [::] is equivalent to the 127.0.0.1 address, but does not match the filter
DataHub is an open-source metadata platform. The DataHub frontend acts as a proxy able to forward any REST or GraphQL re
The undertow client is not checking the server identity presented by the server certificate in https connections. This i
In Moodle, insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictio
Jellyfin up to v10.7.7 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /Repositories. T
Stimulsoft GmbH Stimulsoft Designer (Web) 2023.1.3 is vulnerable to Server Side Request Forgery (SSRF). TThe Reporting D
Appwrite up to v1.2.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /v1/avatars/favic
A Server-Side Request Forgery vulnerability in DELMIA Apriso Release 2017 through Release 2022 could allow an unauthe
blackbox_exporter v0.23.0 was discovered to contain an access control issue in its probe interface. This vulnerability a
CData RSB Connect v22.0.8336 was discovered to contain a Server-Side Request Forgery (SSRF).
An issue in the logic used to check 0.0.0.0 against the cURL blocked hosts lists resulted in an SSRF risk. This flaw aff
Shibboleth XMLTooling before 3.2.4, as used in OpenSAML and Shibboleth Service Provider, allows SSRF via a crafted KeyIn
InfoDoc Document On-line Submission and Approval System lacks sufficient restrictions on the available tags within its
GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. In
Server Side Request Forgery (SSRF) vulnerability in NebulaGraph Studio version 3.7.0, allows remote attackers to gain se
LibreY is a fork of LibreX, a framework-less and javascript-free privacy respecting meta search engine. LibreY is subjec
Jenkins Bitbucket Push and Pull Request Plugin 2.4.0 through 2.8.3 (both inclusive) trusts values provided in the webhoo
GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. A S
link_to_local_path in ebooks/conversion/plugins/html_input.py in calibre before 6.19.0 can, by default, add resources ou
umputun remark42 version 1.12.1 and before has a Blind Server-Side Request Forgery (SSRF) vulnerability.
`nuxt-api-party` is an open source module to proxy API requests. nuxt-api-party attempts to check if the user has passed
An unauthenticated attacked could send a specifically crafted web request causing a Server-Side Request Forgery (SSRF) i
Arbitrary file properties reading vulnerability in Apache Software Foundation Apache OFBiz when user operates an uri cal
Sending specially crafted HTTP requests to Miniflare's server could result in arbitrary HTTP and WebSocket requests bein
Due to improper input controls In SAP NetWeaver AS for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 7
Group-Office is an enterprise CRM and groupware tool. In affected versions there is full Server-Side Request Forgery (SS
A vulnerability was found in kalcaddle kodbox up to 1.48. It has been rated as critical. Affected by this issue is the f
forem up to v2022.11.11 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /articles/{id}.
SAP Solution Manager (Diagnostics agent) - version 7.20, allows an unauthenticated attacker to blindly execute HTTP requ
Server Side Request Forgery vulnerability found in Deskpro Support Desk v2021.21.6 allows attackers to execute arbitrary
The Dropbox Folder Share plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and includ
Frequently Asked Questions
What is CWE-918?
CWE-918 (Server-Side Request Forgery (SSRF)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-918?
There are 3,755 CVE records associated with CWE-918 in our database. Of these, 428 are critical severity, 1157 are high severity, and 1478 are medium severity.
How can I protect against CWE-918 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-918 using AI-powered security agents.
Detect CWE-918 Vulnerabilities
CyberStrike's AI agents automatically detect server-side request forgery (ssrf) vulnerabilities across your infrastructure.
Get Started