CVE-2026-107449 | linuxserver Heimdall up to 2.8.3 ItemController SupportedApps::execute server-side request forgery
A vulnerability categorized as critical has been discovered in linuxserver Heimdall up to 2.8.3. This impacts the function SupportedApps::execute of the component ItemController. The manipulation results in server-side request forgery.
This vulnerability was named CVE-2026-107449. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More