CVE Watchtower


← Back to CVE List

CVE-2026-9557NVD

Description

A Server-Side Request Forgery (SSRF) vulnerability exists in Mautic's Focus component. Due to insufficient validation of user-supplied URLs, an authenticated user can trigger outbound HTTP requests from the hosting server, enabling internal network reconnaissance or forcing requests to arbitrary internal or external destinations.
Severity Level
MEDIUM (6.4)
Published Date
29/05/2026
Last Modified
29/05/2026
Exploitation Status
????