CVE-2026-19233

CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists that could cause unauthorized command execution and disclosure of server data when an attacker with a privileged account sends crafted, unvalidated parameters to a server endpoint.

  • Published Sep 9, 2026
  • CVSS 8.6 high
  • 0.7% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-19233 at the National Vulnerability Database