CWE-918: Server-Side Request Forgery (SSRF)
The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.
Yearly Trend
Top Affected Vendors
All Server-Side Request Forgery (SSRF) CVEs (803)
The Librarian contains a server-side request forgery (SSRF) vulnerability that allows attackers to use the web_fetch tool to scan internal network por...
Jan 16, 2026Mastodon's IP address filtering mechanism had incomplete coverage, allowing attackers to bypass protections against local network requests. This enabl...
Jan 8, 2026Cowrie honeypot versions before 2.9.0 contain a server-side request forgery vulnerability in the emulated wget and curl commands. Unauthenticated atta...
Dec 31, 2025A Server-Side Request Forgery (SSRF) vulnerability in markdownify-mcp allows attackers to bypass private IP restrictions using hostname-based bypass t...
Dec 10, 2025fetch-mcp v1.0.2 and earlier contains a Server-Side Request Forgery (SSRF) vulnerability that allows attackers to bypass private IP validation mechani...
Dec 9, 2025This SSRF vulnerability in Apache HTTP Server on Windows allows attackers to force the server to make requests to malicious servers, potentially leaki...
Dec 5, 2025This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in the Popup Builder WordPress plugin. Unauthenticated attackers can exploit ins...
Oct 24, 2025This vulnerability allows unauthenticated attackers to perform blind server-side request forgery (SSRF) against vulnerable Splunk deployments, potenti...
Oct 1, 2025This Server-Side Request Forgery (SSRF) vulnerability in Flowise version 3.0.5 allows attackers to use the application server as a proxy to access int...
Sep 22, 2025An unauthenticated attacker can exploit a Server-Side Request Forgery (SSRF) vulnerability in StorageGRID to change passwords for Grid Manager or Tena...
Sep 19, 2025This SSRF vulnerability in Schneider Electric products allows attackers to send specially crafted documents to vulnerable endpoints, potentially acces...
Aug 20, 2025This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in Apache HTTP Server on Windows that allows attackers to leak NTLM hashes to ma...
Jul 10, 2025CVE-2025-46568 is a Server-Side Request Forgery (SSRF) vulnerability in Stirling-PDF that allows attackers to read arbitrary files on the server throu...
May 1, 2025AutoGPT versions before 0.6.1 contain a DNS rebinding vulnerability in the requests wrapper that allows Server-Side Request Forgery (SSRF). Attackers ...
Apr 14, 2025SmartRobot from INTUMIT has an unauthenticated Server-Side Request Forgery vulnerability that allows attackers to make the server send requests to int...
Apr 14, 2025This SSRF vulnerability in LNbits allows attackers to make the server send HTTP requests to internal network resources by manipulating LNURL authentic...
Apr 6, 2025This Out-of-Band Server-Side Request Forgery (OOB SSRF) vulnerability in OpenEMR allows attackers to force the server to make unauthorized requests to...
Mar 31, 2025This SSRF vulnerability in AutoGPT allows attackers to bypass URL validation and make unauthorized requests to internal systems. It affects AutoGPT ve...
Mar 20, 2025A Server-Side Request Forgery (SSRF) vulnerability in composiohq/composio v0.4.4 allows attackers to read arbitrary files on the system by exploiting ...
Mar 20, 2025ComfyUI v0.2.4 has a Server-Side Request Forgery (SSRF) vulnerability where attackers can combine two REST APIs to make the server fetch unauthorized ...
Mar 20, 2025This SSRF vulnerability in parisneo/lollms-webui allows attackers to make the server send unauthorized HTTP requests to internal or external systems, ...
Mar 20, 2025This SSRF vulnerability in infiniflow/ragflow version 0.12.0 allows attackers to make the server send requests to arbitrary URLs, potentially accessin...
Mar 20, 2025This Server-Side Request Forgery (SSRF) vulnerability in haotian-liu/llava allows attackers to make the server send HTTP requests to arbitrary interna...
Mar 20, 2025A Server-Side Request Forgery (SSRF) vulnerability in lm-sys/fastchat web server allows attackers to make the server send requests to internal resourc...
Mar 20, 2025This vulnerability in haotian-liu/llava version 1.2.0 allows attackers to perform Server-Side Request Forgery (SSRF) through the /run/predict endpoint...
Mar 20, 2025A Server-Side Request Forgery (SSRF) vulnerability in lm-sys/fastchat version 0.2.36 allows attackers to send crafted requests through the /queue/join...
Mar 20, 2025This Server-Side Request Forgery (SSRF) vulnerability in langgenius/dify version 0.9.1 allows attackers to make unauthorized requests to internal netw...
Mar 20, 2025GPT Academic version 3.83 contains a Server-Side Request Forgery (SSRF) vulnerability in its HotReload plugin function. Attackers can exploit this to ...
Mar 20, 2025This SSRF vulnerability in GPT Academic allows attackers to make the server request arbitrary web resources using its credentials. It affects users ru...
Mar 20, 2025CVE-2025-25301 is a server-side request forgery (SSRF) vulnerability in Rembg's API endpoint that allows attackers to fetch and process images from in...
Mar 3, 2025This SSRF vulnerability in SUCMS v1.0 allows attackers to make the server send requests to internal systems by manipulating the admin_webgather.php co...
Feb 27, 2025A Server-Side Request Forgery vulnerability in SonicOS SSH management interface allows authenticated attackers to make the firewall initiate TCP conne...
Jan 9, 2025This SSRF vulnerability in Smart Agent v1.1.0 allows attackers to make the server send requests to internal systems, potentially exposing sensitive in...
Dec 27, 2024This SSRF vulnerability in Stirling-PDF allows attackers to make the server send requests to internal systems by manipulating the /url-to-pdf endpoint...
Dec 19, 2024This vulnerability allows server-side request forgery (SSRF) in Mobile Security Framework (MobSF) versions before 3.9.7. Attackers can exploit a redir...
Dec 3, 2024A Server-Side Request Forgery (SSRF) vulnerability in Logpoint SOAR allows attackers to make the server send requests to internal systems, potentially...
Nov 7, 2024This Server-Side Request Forgery (SSRF) vulnerability in JPress allows attackers to make the vulnerable server send requests to internal or external s...
Oct 11, 2024This Server-Side Request Forgery (SSRF) vulnerability in Ivanti Avalanche allows remote unauthenticated attackers to make the server send requests to ...
Oct 8, 2024This Server-Side Request Forgery (SSRF) vulnerability in the WordPress Justified Image Grid plugin allows attackers to make unauthorized requests from...
Sep 23, 2024This SSRF vulnerability in berriai/litellm allows attackers to redirect API requests to malicious servers, exposing OpenAI API keys. Any application u...
Sep 13, 2024This vulnerability in streamlit-geospatial allows blind server-side request forgery (SSRF) where user-controlled URLs are passed to a Web Map Service ...
Jul 26, 2024CVE-2024-41812 is a Server-Side Request Forgery (SSRF) vulnerability in txtdot HTTP proxy that allows attackers to use the server as a proxy to send H...
Jul 26, 2024This vulnerability in Apache HTTP Server on Windows allows attackers to perform Server-Side Request Forgery (SSRF) attacks when mod_rewrite is configu...
Jul 18, 2024This vulnerability in Microsoft SharePoint Server allows attackers to access sensitive information without proper authorization. It affects organizati...
Jul 9, 2024This SSRF vulnerability in mintplex-labs/anything-llm allows attackers to bypass IP filtering and access internal network resources by using alternati...
Jun 5, 2024The WP STAGING WordPress Backup Plugin before version 3.5.0 allows administrators to conduct Server-Side Request Forgery (SSRF) attacks. This vulnerab...
May 31, 2024This vulnerability allows remote attackers to perform Server-Side Request Forgery (SSRF) in Ladder software versions 0.0.1 through 0.0.21. Attackers c...
Apr 6, 2024This CVE describes a server-side request forgery (SSRF) vulnerability in Mobile Security Framework (MobSF) versions 3.9.5 Beta and prior. The vulnerab...
Mar 22, 2024This vulnerability in AnythingLLM allows authenticated users with manager or admin permissions to discover and potentially access other internal servi...
Feb 27, 2024This vulnerability in AnythingLLM's web scraper allows authorized users (managers, admins, or single users) to access AWS EC2 instance metadata servic...
Feb 26, 2024About Server-Side Request Forgery (SSRF) (CWE-918)
The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.
Our database tracks 803 CVEs classified as CWE-918, with 165 rated critical and 305 rated high severity. The average CVSS score for Server-Side Request Forgery (SSRF) vulnerabilities is 7.2.
External reference: View CWE-918 on MITRE CWE →
Monitor Server-Side Request Forgery (SSRF) Vulnerabilities
Get alerted when new Server-Side Request Forgery (SSRF) CVEs affect your infrastructure.
Start Monitoring Free