Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-13316

Опубликовано: 30 июн. 2026
Источник: debian
EPSS Низкий

Описание

A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack and steal cloud metadata service on AWS/GCP/Azure environment through foreman component.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
foremanitppackage

EPSS

Процентиль: 1%
0.00105
Низкий

Связанные уязвимости

CVSS3: 4.4
redhat
2 месяца назад

A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack and steal cloud metadata service on AWS/GCP/Azure environment through foreman component.

CVSS3: 4.4
nvd
около 2 месяцев назад

A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack and steal cloud metadata service on AWS/GCP/Azure environment through foreman component.

CVSS3: 4.4
github
около 2 месяцев назад

A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack and steal cloud metadata service on AWS/GCP/Azure environment through foreman component.

EPSS

Процентиль: 1%
0.00105
Низкий