Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.875 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 171 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Search results for: SSRF

Displaying 1 - 25 results out of 156

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
Imgproxy < 3.27.2 - Server-Side Request Forgery (SSRF)Network Scanner

Medium(5.3)

0.040.88No
Adobe Experience Manager (up to 6.5.23.0) SSRFNetwork Scanner

Medium(6.5)

0.110.93No
Cybersecurity Infrastructure Security Agency (CISA)Zimbra Collaboration Suite - SSRFNetwork Scanner

High(7.5)

0.951No
WordPress <= 6.2 - Server Side Request ForgeryNetwork Scanner

Medium(5.9)

0.911No
Astro Cloudflare Adapter - Server Side Request ForgeryNetwork Scanner

High(7.2)

0.020.79No
Stirling-PDF SSRF via MarkdownNetwork Scanner

High(8.6)

0.040.87No
Memos 0.13.2 - Server-Side Request ForgeryNetwork Scanner

Medium(6.1)

0.060.9No
Memos 0.13.2 - Server-Side Request ForgeryNetwork Scanner

Medium(5.3)

0.060.91No
Next.js Middleware - Server-Side Request ForgeryNetwork Scanner

Medium(6.5)

0.060.9No
Memos 0.13.2 - Cross-Site Scripting & SSRFNetwork Scanner

Medium(6.1)

0.030.86No
Portal API - Server Side Request ForgeryNetwork Scanner

High

N/A
N/A
No
Request-Baskets <= 1.2.1 - Server Side Request ForgeryNetwork Scanner

Medium(6.5)

0.931No
Apache Druid - Server-Side Request ForgeryNetwork Scanner

High(5.4)

0.030.85No
TiTiler - Blind Server Side Request ForgeryNetwork Scanner

High

N/A
N/A
No
GeoServer Demo Request Endpoint - Server Side Request ForgeryNetwork Scanner

High(7.5)

0.050.89No
LyLme spage v1.9.5 - Server-Side Request ForgeryNetwork Scanner

Critical(9.1)

0.50.98No
OneNav v0.9.35-20240318 - Server-Side Request Forgery (SSRF)Network Scanner

Medium(6.5)

0.040.88No
WordPress Broken Link Notifier < 1.3.1 - Unauthenticated SSRFNetwork Scanner

High(7.5)

0.020.79No
Gradio - Server-Side Request ForgeryNetwork Scanner

High(8.6)

0.50.98No
GeoServer WFS - XXE Processing VulnerabilityNetwork Scanner

Critical(9.9)

0.040.88No
Grafana - XSS / Open Redirect / SSRF via Client Path TraversalNetwork Scanner

High(7.6)

0.060.9No
draw.io < 18.0.5 - Server Side Request Forgery (SSRF)Network Scanner

High(7.5)

0.310.97No
Cybersecurity Infrastructure Security Agency (CISA)Commvault - SSRF via /commandcenter/deployWebpackage.doNetwork Scanner

Critical(10)

0.670.99No
WordPress CAS Theme <= 1.0.0 - Server-Side Request ForgeryNetwork Scanner

Critical(9.1)

0.310.97No
WordPress WPB Show Core <= 2.2 - Server-Side Request ForgeryNetwork Scanner

Critical(9.8)

0.841No