CVE-2026-54637 | dragonflyoss Dragonfly up to 2.4.4-rc.2 Scheduler peer.go Peer.DownloadTinyFile server-side request forgery
A vulnerability classified as problematic was found in dragonflyoss Dragonfly up to 2.4.4-rc.2. This affects the function Peer.DownloadTinyFile of the file scheduler/resource/standard/peer.go of the component Scheduler. Executing a manipulation can lead to server-side request forgery.
This vulnerability is handled as CVE-2026-54637. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More