CVE-2026-65317 | Weaviate Verba up to 2.1.3 API Middleware /api/connect host/port server-side request forgery

SecurityVulns

A vulnerability identified as critical has been detected in Weaviate Verba up to 2.1.3. Impacted is an unknown function of the file /api/connect of the component API Middleware. This manipulation of the argument host/port causes server-side request forgery.

This vulnerability is tracked as CVE-2026-65317. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More