CVE-2026-62993 | smarty-php Smarty up to 4.5.6/5.8.1 Fetch function.fetch.php Security::isTrustedUri server-side request forgery
A vulnerability was found in smarty-php Smarty up to 4.5.6/5.8.1. It has been rated as critical. The impacted element is the function Security::isTrustedUri of the file libs/plugins/function.fetch.php of the component Fetch. The manipulation leads to server-side request forgery.
This vulnerability is documented as CVE-2026-62993. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More