Количество 3
Количество 3
CVE-2026-33440
Weblate is a web based localization tool. In versions prior to 5.17, the ALLOWED_ASSET_DOMAINS setting applied only to the first issued requests and didn't restrict possible redirects. This issue has been fixed in version 5.17.
CVE-2026-33440
Weblate is a web based localization tool. In versions prior to 5.17, t ...
GHSA-5fhx-9jwj-867m
Weblate: Authenticated SSRF via redirect bypass of ALLOWED_ASSET_DOMAINS in screenshot URL uploads
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-33440 Weblate is a web based localization tool. In versions prior to 5.17, the ALLOWED_ASSET_DOMAINS setting applied only to the first issued requests and didn't restrict possible redirects. This issue has been fixed in version 5.17. | CVSS3: 5 | 0% Низкий | 4 месяца назад | |
CVE-2026-33440 Weblate is a web based localization tool. In versions prior to 5.17, t ... | CVSS3: 5 | 0% Низкий | 4 месяца назад | |
GHSA-5fhx-9jwj-867m Weblate: Authenticated SSRF via redirect bypass of ALLOWED_ASSET_DOMAINS in screenshot URL uploads | CVSS3: 5 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу