← العودة للجدول
CVE-2026-49328
CVE-2026-49328 Apache Fesod (Incubating): Improper validation of user-supplied URLs leading to SSRF
📅 2026-06-01 13:10:34
🔴 Critical 🔥 No Vulners Exploit Web

📋 الوصف الكامل

Server-Side Request Forgery SSRF in the UrlImageConverter component of Apache Fesod Incubating fesod-sheet before 2.0.2-incubating allows attackers to cause outbound network requests to internal or otherwise restricted resources via a user-supplied image URL. Users are recommended to upgrade to version 2.0.2-incubating, which fixes this issue...

💻 الأنظمة المتأثرة

Apache HTTP Server 2.4.x

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-49328

📡 المصدر

Vulners

✅ الحلول والتخفيف

Update to v2.0.2

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←