CVE-2026-9557 UNKNOWN

CVE-2026-9557

Published: 2026-05-29

Description

A Server-Side Request Forgery (SSRF) vulnerability exists in Mautic's Focus component. Due to insufficient validation of user-supplied URLs, an authenticated user can trigger outbound HTTP requests from the hosting server, enabling internal network reconnaissance or forcing requests to arbitrary internal or external destinations.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…