
JQueryingU
Valid JQuery that profiles the system and returns info to the server in a fake analytics GET request

Valid JQuery that profiles the system and returns info to the server in a fake analytics GET request

Unauthenticated SSRF in Chamilo LMS via PENS plugin (pens.php) — CVSS 7.5

Hurrakify <= 2.4 - Unauthenticated Server-Side Request Forgery

CVE-2026-33693: SSRF via 0.0.0.0 Bypass in activitypub-federation-rust v4_is_invalid() (CVSS 6.5 Moderate)

CVE-2026-33340: Critical SSRF in lollms-webui /api/proxy - Unauthenticated arbitrary request forgery (CVSS 9.1)

An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability

[CVE-2021-27905] Apache Solr ReplicationHandler Server Side Request Forgery (SSRF)

CVE-2023-27163 - Request Baskets SSRF

PoC for CVE-2022-25260: pre-auth semi-blind SSRF in JetBrains Hub

Proof of Concept exploit for Server Side Request Forgery vulnerability in Requests Basket v1.2.1 and before.

Proof-of-concept for CVE-2026-37197: Server-Side Request Forgery (SSRF) in NukeViet CMS v4.5.07 admin remote upload, enabling internal network…

Proof-of-concept exploit for CVE-2024-51358, a server-side request forgery (SSRF) vulnerability in Heimdall 2.6.1, enabling remote HTTP requests to…

Disclosure of a Server-Side Request Forgery (SSRF) vulnerability in Inflectra SpiraTeam 7.2.00, detailing the attack vector, impacts, and vendor…

PoC and internal port brute-forcer for CVE-2023-27163

SSRF exploit for CVE-2023-27163 in request-baskets, enabling internal port scanning, cloud metadata probing, and service discovery via malicious…

Apache Solr < 8.8.2 Server Side Request Forgery

[CVE-2021-33690] Server Side Request Forgery vulnerability in SAP NetWeaver Development Infrastructure