← Terug naar overzicht

A server-side request forgery (SSRF) vulnerability has been identified in the light0011 CMS project at specific commits. The flaw resides in the catchimage function within Public/ueditor/php/controller.php, part of the UEditor component. An attacker can manipulate the source[] argument to trigger SSRF remotely. A public exploit is available, increasing the risk of active exploitation. The product follows a rolling release model, making specific version tracking difficult. The project maintainer was notified via a GitHub issue but has not responded. No patch or mitigation has been issued at the time of disclosure.

Affected products

  • UEditor
  • light0011 CMS

Related CVE's

  • CVE-2026-85380

Categories

  • Web Technologies
  • Zero-Day Vulnerabilities