Impact
The vulnerability originates from the fetch function in ssrfGuard.js, where manipulation of the provider_options.baseUrl argument lets a remote attacker cause the 9Router backend to issue arbitrary HTTP requests. This can lead to data exfiltration, internal network probing, or further compromise of backend services, representing a classic Server‑Side Request Forgery identified as CWE‑918.
Affected Systems
All installations of decolua 9Router up to and including version 0.5.55 are affected. Versions newer than 0.5.55 are not known to be vulnerable.
Risk and Exploitability
The CVSS base score of 6.9 indicates a moderate risk; the exploit is remotely triggered without authentication. The lack of an EPSS score or KEV listing suggests limited evidence of active exploitation, yet the attack path does not require privileged credentials and can potentially reach any reachable host from the server. The overall risk is moderate to high for environments with valuable internal resources.
OpenCVE Enrichment