CVE-2026-79913 | Cloudreve up to 4.17.x ValidateExternalURL pkg/request/ssrf.go checkIP SrcUri server-side request forgery
A vulnerability identified as problematic has been detected in Cloudreve up to 4.17.x. Impacted is the function checkIP of the file pkg/request/ssrf.go of the component ValidateExternalURL. Performing a manipulation of the argument SrcUri results in server-side request forgery.
This vulnerability is identified as CVE-2026-79913. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More