CVE-2026-47684 | Sync-in Server up to 2.2.x URL Download Feature server-side request forgery (GHSA-q4x5-8cj6-52wg)

SecurityVulns

A vulnerability categorized as critical has been discovered in Sync-in Server up to 2.2.x. The affected element is an unknown function of the component URL Download Feature. Executing a manipulation can lead to server-side request forgery.

The identification of this vulnerability is CVE-2026-47684. The attack may be launched remotely. There is no exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More