Threats Tagged 'ghsa-77cr-rrgg-p4wf'
View all threats tagged with 'ghsa-77cr-rrgg-p4wf'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'ghsa-77cr-rrgg-p4wf'
Click on any threat for detailed analysis and mitigation recommendations
0 Ground Station versions prior to 0.6.0 contain an unauthenticated blind server-side request forgery (SSRF) vulnerability. This flaw allows any unauthenticated Socket.IO client to cause the server to issue outbound HTTP requests to attacker-controlled destinations. The vulnerability arises from disabled authentication enforcement, a wildcard CORS policy, and lack of validation on URLs stored and used in scheduled sync tasks. The malicious URL persists in the database and triggers repeated SSRF every 24 hours without requiring attacker presence. Join the discussion | CVE Database V5 | 08/06/2026, 15:38:02 UTC Added: 08/06/2026, 22:13:26 UTC |
Showing 1 to 1 of 1 result