CVE-2026-54508 | liketrek TREK up to 3.0.x URL Validation placeService.ts server-side request forgery
A vulnerability labeled as critical has been found in liketrek TREK up to 3.0.x. This affects the function importGoogleList/importNaverList/resolveGoogleMapsUrl of the file server/src/services/placeService.ts of the component URL Validation. The manipulation results in server-side request forgery.
This vulnerability is cataloged as CVE-2026-54508. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.VulDB Recent EntriesRead More