← العودة للجدول
CVE-2026-11424
CVE-2026-11424 — GHSA: A server-side request forgery (SSRF) vulnerability exists in a GraphQL service component shared...
📅 2026-06-05
🟠 High 🔥 No GHSA Exploit Web

📋 الوصف الكامل

A server-side request forgery (SSRF) vulnerability exists in a GraphQL service component shared by Altium Enterprise Server and Altium 365. An authenticated user can submit a request whose input is treated as a URL by the server and used to issue an outbound HTTP GET request without URL validation or destination filtering. The response body is then returned to the user. This allows an authenti

💻 الأنظمة المتأثرة

GHSA: A server-side

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-11424

📡 المصدر

GHSA

✅ الحلول والتخفيف

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←