Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.520 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 177 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Search results for: SSRF

Displaying 1 - 25 results out of 165

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
Atlassian Confluence XSLT Macro - Server-Side Request ForgeryNetwork Scanner

Medium(6.5)

No
Prometheus Blackbox Exporter - Server-Side Request Forgery (SSRF)Network Scanner

Medium(5.8)

No
Ektron CMS Blogs xmlrpc.aspx - XML External Entity InjectionNetwork Scanner
N/A
No
Selenium Grid ExposureNetwork Scanner
N/A
No
Gradio Image Component - Server-Side Request Forgery (None)Network Scanner

High(8.6)

No
Wordpress Jetpack plugin - Server Side Request ForgeryNetwork Scanner
N/A
No
Astro - Broken Access ControlNetwork Scanner

Medium(6.5)

No
Cisco Finesse - Server-Side Request Forgery (SSRF)Network Scanner

Medium(5.8)

No
Bentoml - Server Side Request ForgeryNetwork Scanner
N/A
No
Imgproxy < 3.27.2 - Server-Side Request Forgery (SSRF)Network Scanner

Medium(5.3)

No
Adobe Experience Manager (up to 6.5.23.0) SSRFNetwork Scanner

Medium(6.5)

No
Cybersecurity Infrastructure Security Agency (CISA)Zimbra Collaboration Suite - SSRFNetwork Scanner

High(7.5)

No
WordPress <= 6.2 - Server Side Request ForgeryNetwork Scanner

Medium(5.9)

No
Astro Cloudflare Adapter - Server Side Request ForgeryNetwork Scanner

High(7.2)

No
Stirling-PDF SSRF via MarkdownNetwork Scanner

High(8.6)

No
Memos 0.13.2 - Server-Side Request ForgeryNetwork Scanner

Medium(6.1)

No
Memos 0.13.2 - Cross-Site Scripting & SSRFNetwork Scanner

Medium(6.1)

No
Next.js Middleware - Server-Side Request ForgeryNetwork Scanner

Medium(6.5)

No
Memos 0.13.2 - Server-Side Request ForgeryNetwork Scanner

Medium(5.3)

No
Portal API - Server Side Request ForgeryNetwork Scanner
N/A
No
Request-Baskets <= 1.2.1 - Server Side Request ForgeryNetwork Scanner

Medium(6.5)

No
Apache Druid - Server-Side Request ForgeryNetwork Scanner

Medium(5.4)

No
TiTiler - Blind Server Side Request ForgeryNetwork Scanner
N/A
No
GeoServer Demo Request Endpoint - Server Side Request ForgeryNetwork Scanner

High(7.5)

No
LyLme spage v1.9.5 - Server-Side Request ForgeryNetwork Scanner

Critical(9.1)

No