CVE-2026-19233
CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists that could cause unauthorized command execution and disclosure of server data when an attacker with a privileged account sends crafted, unvalidated parameters to a server endpoint.
- Published Sep 9, 2026
- CVSS 8.6 high
- 0.7% chance of exploitation in the next 30 days (EPSS)