Server-Side Request Forgery (SSRF) vulnerabilities
CWE-918 · 12 tracked
Server-Side Request Forgery (SSRF) (CWE-918) is a weakness class describing a recurring flaw pattern. Below is every server-side request forgery (ssrf) vulnerability we track — each with severity, exploit status, EPSS exploitation-probability, and step-by-step remediation. Understanding the weakness class helps you recognize the same flaw across different packages and products, and apply the right class of mitigation once.