⤷ Title: From Source Code to Exploit: Understanding CVE-2026–3576
════════════════════════
𐀪 Author: Balachandar Gowrisankar
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 04:55:57 GMT
════════════════════════
⌗ Tags: #penetration_testing #wordpress #ssrf #cybersecurity #vulnerability_research
════════════════════════
𐀪 Author: Balachandar Gowrisankar
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 04:55:57 GMT
════════════════════════
⌗ Tags: #penetration_testing #wordpress #ssrf #cybersecurity #vulnerability_research
Medium
From Source Code to Exploit: Understanding CVE-2026–3576
In this article, I’ll be diving deep into the technical details of a recently disclosed vulnerability in Wordpress’s Planyo Online…
⤷ Title: SSRF in AI Agents: Why a Tool Call Is All It Takes (and How to Block It at Egress)
════════════════════════
𐀪 Author: AgentG
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 08:02:43 GMT
════════════════════════
⌗ Tags: #ssrf #devsecops #cloud_security #ai_security #llm_agent
════════════════════════
𐀪 Author: AgentG
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 08:02:43 GMT
════════════════════════
⌗ Tags: #ssrf #devsecops #cloud_security #ai_security #llm_agent
Medium
SSRF in AI Agents: Why a Tool Call Is All It Takes (and How to Block It at Egress)
How a single agent tool call can steal cloud credentials, and why egress enforcement is the only reliable place to stop it.
⤷ Title: SSRF (Server Side Request Forgery) Nedir?
════════════════════════
𐀪 Author: Mert Budak
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 14:12:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #siber_guvenlik #web_security #ssrf #portswigger
════════════════════════
𐀪 Author: Mert Budak
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 14:12:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #siber_guvenlik #web_security #ssrf #portswigger
Medium
SSRF (Server Side Request Forgery) Nedir?
Türkçe karşılığı “Sunucu Taraflı İstek Sahtekarlığı” olan SSRF, saldırganın hedef sunucudaki uygulamayı manipüle ederek, sunucu adına kötü…
⤷ Title: OpenDJ Vulnerabilities: Authorization Bypass (CVSS 9.6) and Unauthenticated SSRF (CVSS 9.4)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 14:02:59 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authorization Bypass #CVE_2026_62373 #CVE_2026_62375 #Deserialization #LDAP #Open Identity Platform #OpenDJ #ssrf
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 14:02:59 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authorization Bypass #CVE_2026_62373 #CVE_2026_62375 #Deserialization #LDAP #Open Identity Platform #OpenDJ #ssrf
Daily CyberSecurity
OpenDJ Vulnerabilities: Authorization Bypass (CVSS 9.6) and Unauthenticated SSRF (CVSS 9.4)
TL;DR OpenDJ 5.1.2 fixes four security flaws in the open-source LDAP directory server. The two most severe OpenDJ vulnerabilities are a CVSS 9.6 authorization bypass and a CVSS 9.4 unauthenticated…
⤷ Title: SSRF (Server-Side Request Forgery)
════════════════════════
𐀪 Author: Anubhav_bora
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 18:31:01 GMT
════════════════════════
⌗ Tags: #vulnerability #ssrf #web_security #cybersecurity
════════════════════════
𐀪 Author: Anubhav_bora
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 18:31:01 GMT
════════════════════════
⌗ Tags: #vulnerability #ssrf #web_security #cybersecurity
Medium
SSRF (Server-Side Request Forgery)
SSRF stands for Server-Side Request Forgery. It’s a vulnerability where an attacker gets a server to make a request it shouldn’t — to an…
⤷ Title: IBM WebSphere Vulnerabilities (CVSS 9.8) Enable RCE, Privilege Escalation, and SSRF
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 01:01:42 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_14446 #CVE_2026_14512 #CVE_2026_14529 #IBM WebSphere #Remote Code Execution #ssrf #WebSphere Application Server
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 01:01:42 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_14446 #CVE_2026_14512 #CVE_2026_14529 #IBM WebSphere #Remote Code Execution #ssrf #WebSphere Application Server
Daily CyberSecurity
IBM WebSphere Vulnerabilities (CVSS 9.8) Enable RCE, Privilege Escalation, and SSRF
TL;DR IBM disclosed four IBM WebSphere vulnerabilities in late July 2026. Two of them, CVE-2026-14512 and CVE-2026-14446, each score 9.8 CVSS. A new server-side request forgery flaw, CVE-2026-1452…
⤷ Title: PortSwigger Lab Write-up: SSRF with Blacklist-Based Input Filter
════════════════════════
𐀪 Author: Abel
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 22:19:00 GMT
════════════════════════
⌗ Tags: #burpsuite #ssrf #portswigger_lab #writeup #burp
════════════════════════
𐀪 Author: Abel
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 22:19:00 GMT
════════════════════════
⌗ Tags: #burpsuite #ssrf #portswigger_lab #writeup #burp
Medium
PortSwigger Lab Write-up: SSRF with Blacklist-Based Input Filter
Lab Overview
⤷ Title: How I Found an SSRF in Mozilla Firefox That Could Compromise the Content Pipeline Behind 300M+ New…
════════════════════════
𐀪 Author: sn0xsharma
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 08:25:35 GMT
════════════════════════
⌗ Tags: #browser_exploitation #0day #ssrf
════════════════════════
𐀪 Author: sn0xsharma
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 08:25:35 GMT
════════════════════════
⌗ Tags: #browser_exploitation #0day #ssrf
Medium
How I Found an SSRF in Mozilla Firefox That Could Compromise the Content Pipeline Behind 300M+ New Tabs.
A code-first hunt through Mozilla’s open-source editorial backend where an existing SSRF guard was wired to exactly one endpoint, and the…
⤷ Title: Server-Side Request Forgery (SSRF)
════════════════════════
𐀪 Author: Yusufbarut
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 15:04:25 GMT
════════════════════════
⌗ Tags: #owasp #ssrf #cybersecurity #appsec #web_security
════════════════════════
𐀪 Author: Yusufbarut
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 15:04:25 GMT
════════════════════════
⌗ Tags: #owasp #ssrf #cybersecurity #appsec #web_security
Medium
Server-Side Request Forgery (SSRF)
Web Güvenliği Serisi — Bölüm 4
⤷ Title: The AWS Metadata Attack (IMDS) Deep Dive
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #cloud_security #ethical_hacking #ssrf #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #cloud_security #ethical_hacking #ssrf #bug_bounty #cybersecurity
Medium
The AWS Metadata Attack (IMDS) Deep Dive
Hey friends! Nitin here 👋
⤷ Title: OWASP API #7 - Server Side Request Forgery (SSRF): When an API Becomes the Attacker’s Proxy
════════════════════════
𐀪 Author: Narmadha
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 16:00:47 GMT
════════════════════════
⌗ Tags: #ssrf #api #vulnerability #cybersecurity #web
════════════════════════
𐀪 Author: Narmadha
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 16:00:47 GMT
════════════════════════
⌗ Tags: #ssrf #api #vulnerability #cybersecurity #web
Medium
OWASP API #7 - Server Side Request Forgery (SSRF): When an API Becomes the Attacker’s Proxy
Imagine a web application that allows users to upload a profile picture by providing an image URL.
⤷ Title: Adobe Campaign Classic CVE-2026-48331 Scores CVSS 10.0 for Arbitrary Code Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 02:21:44 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Adobe #Adobe Campaign Classic #Arbitrary Code Execution #CVE_2026_48331 #patch #sql injection #ssrf #Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 02:21:44 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Adobe #Adobe Campaign Classic #Arbitrary Code Execution #CVE_2026_48331 #patch #sql injection #ssrf #Vulnerability
Daily CyberSecurity
Adobe Campaign Classic CVE-2026-48331 Scores CVSS 10.0 for Arbitrary Code Execution
TL;DR Adobe published a Priority 1 security update for Adobe Campaign Classic. The patch resolves seven severe flaws, including three bugs with a CVSS score of 10.0. Consequently, attackers can ex…
⤷ Title: The Server Is a Servant: SSRF in Labs
════════════════════════
𐀪 Author: Ömer Habip
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 12:00:49 GMT
════════════════════════
⌗ Tags: #ssrf_vulnerability #ssrf #penetration_testing #web_security #cybersecurity
════════════════════════
𐀪 Author: Ömer Habip
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 12:00:49 GMT
════════════════════════
⌗ Tags: #ssrf_vulnerability #ssrf #penetration_testing #web_security #cybersecurity
Medium
The Server Is a Servant: SSRF in Labs
Last time in The Server Is a Servant, I got an XML parser to fetch things on my behalf, and it ended on a single change: swap file:// for…
⤷ Title: Server-Side Request Forgery (SSRF) to Local File Read: A Deep Dive into a CTF Challenge
════════════════════════
𐀪 Author: Gyaneshchand
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 14:43:58 GMT
════════════════════════
⌗ Tags: #com_olho #ssrf_walkthrough #ssrf #ctf_walkthrough
════════════════════════
𐀪 Author: Gyaneshchand
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 14:43:58 GMT
════════════════════════
⌗ Tags: #com_olho #ssrf_walkthrough #ssrf #ctf_walkthrough
Medium
Server-Side Request Forgery (SSRF) to Local File Read: A Deep Dive into a CTF Challenge
Welcome back, hackers! 👋
⤷ Title: Django Vulnerability CVE-2026-15307 Can Enable Remote Code Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 02:22:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_15307 #Django #Django Security #GeoDjango #Python #rce #Remote Code Execution #ssrf #Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 02:22:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_15307 #Django #Django Security #GeoDjango #Python #rce #Remote Code Execution #ssrf #Vulnerability
Daily CyberSecurity
Django Vulnerability CVE-2026-15307 Can Enable Remote Code Execution
TL;DR The Django team shipped security releases 6.0.8 and 5.2.17 on August 4, 2026. They fix four flaws, led by a high-severity Django vulnerability, CVE-2026-15307. In some setups, it can enable …
⤷ Title: SGLang Hit by Six Vulnerabilities, Including Unauthenticated RCE (CVE-2026-15969)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 14:25:14 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT/CC #CVE_2026_15969 #CVE_2026_15976 #LLM Security #Model Weight Exfiltration #Remote Code Execution #SGLang #ssrf #unauthenticated RCE
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 14:25:14 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT/CC #CVE_2026_15969 #CVE_2026_15976 #LLM Security #Model Weight Exfiltration #Remote Code Execution #SGLang #ssrf #unauthenticated RCE
Daily CyberSecurity
SGLang Hit by Six Vulnerabilities, Including Unauthenticated RCE (CVE-2026-15969)
TL;DR A researcher found six SGLang vulnerabilities, and the worst allow unauthenticated remote code execution. SGLang serves large language models such as DeepSeek and Qwen. CERT/CC published the…
⤷ Title: Webhooks, Integrations & the SSRF Playground
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #ssrf #technology #cybersecurity #ethical_hacking #webhooks
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #ssrf #technology #cybersecurity #ethical_hacking #webhooks
Medium
Webhooks, Integrations & the SSRF Playground
Hey everyone! Nitin here, and this is the FINAL post of this series 👋🎉
⤷ Title: AWS Cloud Security Challenge: SSRF, IMDSv2, and Cloud Takeover
════════════════════════
𐀪 Author: Arun balaji
════════════════════════
ⴵ Time: Thu, 06 Aug 2026 08:47:20 GMT
════════════════════════
⌗ Tags: #ctf_writeup #ssrf #cloud_services #cloud_security #aws
════════════════════════
𐀪 Author: Arun balaji
════════════════════════
ⴵ Time: Thu, 06 Aug 2026 08:47:20 GMT
════════════════════════
⌗ Tags: #ctf_writeup #ssrf #cloud_services #cloud_security #aws
Medium
AWS Cloud Security Challenge: SSRF, IMDSv2, and Cloud Takeover
Hey everyone, It's been a while, and I’m back with an interesting challenge this time. This challenge is from Fampay CTF, where we need to…
⤷ Title: Hack The Box : Cohort Full Walkthrough ( Linux ; Very Easy )
════════════════════════
𐀪 Author: Hibullahi AbdulAzeez
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 08:52:47 GMT
════════════════════════
⌗ Tags: #ssrf_walkthrough #hackthebox_writeup #cohorts #hackthebox #ctf_writeup
════════════════════════
𐀪 Author: Hibullahi AbdulAzeez
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 08:52:47 GMT
════════════════════════
⌗ Tags: #ssrf_walkthrough #hackthebox_writeup #cohorts #hackthebox #ctf_writeup
Medium
Hack The Box : Cohort Full Walkthrough ( Linux ; Very Easy )
Recon
⤷ Title: MarkLogic Server Security Bulletin Patches 10 Vulnerabilities, With CVSS Scores Up to 9.9
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 14:02:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_7329 #CVE_2026_9192 #MarkLogic #privilege escalation #Progress #ssrf
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 14:02:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_7329 #CVE_2026_9192 #MarkLogic #privilege escalation #Progress #ssrf
Daily CyberSecurity
MarkLogic Server Security Bulletin Patches 10 Vulnerabilities, With CVSS Scores Up to 9.9
TL;DR Progress released an August 2026 bulletin for MarkLogic Server. It fixes ten MarkLogic Server vulnerabilities, several rated critical. The worst carry a CVSS score of 9.9. Progress urges all…