Description
A Server-Side Request Forgery (SSRF) vulnerability exists in Mautic's Focus component. Due to insufficient validation of user-supplied URLs, an authenticated user can trigger outbound HTTP requests from the hosting server, enabling internal network reconnaissance or forcing requests to arbitrary internal or external destinations.
Problem types
CWE-918 Server-Side Request Forgery (SSRF)
Product status
4.0.0 (semver) before 4.4.20
5.0.0 (semver) before 5.2.11
6.0.0 (semver) before 6.0.9
7.0.0 (semver) before 7.1.2
Credits
Mateus (@r1beirin)
Nguyen Huy Vu Dung (@dungNHVhust)
Patryk Gruszka (@patrykgruszka)
John Linhart (@escopecz)
Leuchtfeuer Digital Marketing (@Leuchtfeuer)
References
github.com/...mautic/security/advisories/GHSA-jmv8-8j9j-rcpc