← Back

CVE-2026-30404

nvd nist
Published: Mar 19, 2026Modified: Apr 2, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

The backend database management connection test feature in wgcloud v3.6.3 has a server-side request forgery (SSRF) vulnerability. This issue can be exploited to make the server send requests to probe the internal network, remotely download malicious files, and perform other dangerous operations.

Affected (1)

Products: Wgstart: Wgcloud
1 product
Wgcloud
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.6.3

References (2)

Source: cve@mitre.org
ExploitIssue Tracking
Source: cve@mitre.org
Issue Tracking

Timeline

No history available yet.