CVE-2026-61681 | hatchet-dev Hatchet up to 0.91.0 SNS UnsubscribeConfirmation handler sns.go http.Get server-side request forgery

SecurityVulns

A vulnerability was found in hatchet-dev Hatchet up to 0.91.0. It has been classified as problematic. The affected element is the function http.Get of the file internal/integrations/ingestors/sns/sns.go of the component SNS UnsubscribeConfirmation handler. The manipulation leads to server-side request forgery.

This vulnerability is documented as CVE-2026-61681. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More