No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 12 Sep 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in openstatusHQ openstatus up to f04c827112f30a11d571ebdad3892826034d6265. Affected by this vulnerability is an unknown functionality of the file apps/status-page/src/lib/proxy/resolve-custom-domain-rewrite.ts. The manipulation leads to server-side request forgery. The attack may be initiated remotely. This product uses a rolling release model to deliver continuous updates. As a result, specific version information for affected or updated releases is not available. The identifier of the patch is 86f370c9c20074c3c3fdec53a359874b8e670fd4. It is suggested to install a patch to address this issue. This issue got fixed with a silent patch. | |
| Title | openstatusHQ openstatus resolve-custom-domain-rewrite.ts server-side request forgery | |
| First Time appeared |
Openstatushq
Openstatushq openstatus |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:openstatushq:openstatus:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Openstatushq
Openstatushq openstatus |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-12T22:45:17.132Z
Reserved: 2026-09-12T08:03:27.652Z
Link: CVE-2026-90486
No data.
Status : Received
Published: 2026-09-12T23:17:01.073
Modified: 2026-09-12T23:17:01.073
Link: CVE-2026-90486
No data.
OpenCVE Enrichment
No data.
-
CWE-918
Server-Side Request Forgery (SSRF)