Impact
The vulnerability resides in the Playground feature of Zilliz Attu versions prior to 3.0.0. An unauthenticated attacker can construct a request that is proxied by the application to arbitrary URLs, enabling the attacker to reach private IP addresses and internal services. This SSRF flaw could allow data exfiltration, internal service enumeration, or further exploitation of downstream systems. The weakness is classified as CWE-1289, reflecting the improper handling of request routing that bypasses restrictions.
Affected Systems
Systems running Zilliz Attu version 2.x and older that have the Playground feature enabled are affected. The vulnerability applies to every instance where the Playground endpoint is reachable, regardless of network segmentation. An installation using any of the default configurations prior to the release of version 3.0.0 falls within the affected scope.
Risk and Exploitability
The CVSS score of 4 indicates a moderate severity, and the EPSS score is currently unavailable, making it difficult to gauge current exploitation prevalence. The vulnerability is not listed in the CISA KIÉ catalog. The attack vector is likely to be external, targeting the publicly exposed Playground API, though it can be leveraged from within a network if the feature is accessible. While the flaw alone may not trigger high-impact damage, it can serve as a foothold for attackers to access internal resources, making mitigation recommended.
OpenCVE Enrichment