Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-55599

3 месяца назад

phpseclib is a PHP secure communications library. From 0.1.1 until 1.0.30, 2.0.55, and 3.0.54, when an application validates an untrusted X.509 certificate with phpseclib, X509::validateSignature() reads a URL out of that certificate's Authority Information Access (AIA) extension and connects to it. Attacker who supplies certificate fully controls host, port, and path of that connection. URL fetching is enabled by default, and no destination is blocked. An unauthenticated attacker can therefore make a validating server open connections to internal hosts and ports it should never reach, for example loopback 127.0.0.1, cloud metadata address 169.254.169.254, and internal-only services. This is a server-side request forgery (SSRF) caused by an insecure default. This vulnerability is fixed in 1.0.30, 2.0.55, and 3.0.54.

CVSS3: 5.8
EPSS: Низкий
nvd логотип

CVE-2026-55599

3 месяца назад

phpseclib is a PHP secure communications library. From 0.1.1 until 1.0.30, 2.0.55, and 3.0.54, when an application validates an untrusted X.509 certificate with phpseclib, X509::validateSignature() reads a URL out of that certificate's Authority Information Access (AIA) extension and connects to it. Attacker who supplies certificate fully controls host, port, and path of that connection. URL fetching is enabled by default, and no destination is blocked. An unauthenticated attacker can therefore make a validating server open connections to internal hosts and ports it should never reach, for example loopback 127.0.0.1, cloud metadata address 169.254.169.254, and internal-only services. This is a server-side request forgery (SSRF) caused by an insecure default. This vulnerability is fixed in 1.0.30, 2.0.55, and 3.0.54.

CVSS3: 5.8
EPSS: Низкий
debian логотип

CVE-2026-55599

3 месяца назад

phpseclib is a PHP secure communications library. From 0.1.1 until 1.0 ...

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20260901-80-0037

23 дня назад

Уязвимость php-phpseclib

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20260901-73-0026

23 дня назад

Уязвимость php-phpseclib

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-m557-wrgg-6rp4

3 месяца назад

phpseclib: X.509 certificate validation sends attacker-controlled outbound requests (server-side request forgery) via Authority Information Access

CVSS3: 5.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-55599

phpseclib is a PHP secure communications library. From 0.1.1 until 1.0.30, 2.0.55, and 3.0.54, when an application validates an untrusted X.509 certificate with phpseclib, X509::validateSignature() reads a URL out of that certificate's Authority Information Access (AIA) extension and connects to it. Attacker who supplies certificate fully controls host, port, and path of that connection. URL fetching is enabled by default, and no destination is blocked. An unauthenticated attacker can therefore make a validating server open connections to internal hosts and ports it should never reach, for example loopback 127.0.0.1, cloud metadata address 169.254.169.254, and internal-only services. This is a server-side request forgery (SSRF) caused by an insecure default. This vulnerability is fixed in 1.0.30, 2.0.55, and 3.0.54.

CVSS3: 5.8
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-55599

phpseclib is a PHP secure communications library. From 0.1.1 until 1.0.30, 2.0.55, and 3.0.54, when an application validates an untrusted X.509 certificate with phpseclib, X509::validateSignature() reads a URL out of that certificate's Authority Information Access (AIA) extension and connects to it. Attacker who supplies certificate fully controls host, port, and path of that connection. URL fetching is enabled by default, and no destination is blocked. An unauthenticated attacker can therefore make a validating server open connections to internal hosts and ports it should never reach, for example loopback 127.0.0.1, cloud metadata address 169.254.169.254, and internal-only services. This is a server-side request forgery (SSRF) caused by an insecure default. This vulnerability is fixed in 1.0.30, 2.0.55, and 3.0.54.

CVSS3: 5.8
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-55599

phpseclib is a PHP secure communications library. From 0.1.1 until 1.0 ...

CVSS3: 5.8
0%
Низкий
3 месяца назад
redos логотип
ROS-20260901-80-0037

Уязвимость php-phpseclib

CVSS3: 5.8
0%
Низкий
23 дня назад
redos логотип
ROS-20260901-73-0026

Уязвимость php-phpseclib

CVSS3: 5.8
0%
Низкий
23 дня назад
github логотип
GHSA-m557-wrgg-6rp4

phpseclib: X.509 certificate validation sends attacker-controlled outbound requests (server-side request forgery) via Authority Information Access

CVSS3: 5.8
0%
Низкий
3 месяца назад

Уязвимостей на страницу