Impact
The flaw lies in the openConnection method of ThemeService.java in taisan tarzan‑cms 1.0.0. An attacker can forge the httpUrl argument, causing the application to establish a connection to any specified URL, which enables the server to fetch internal or arbitrary resources. This can lead to data exfiltration, network reconnaissance, or use as a stepping‑stone to further attacks against internal services, and the vulnerability is a classic server‑side request forgery (CWE‑918) that can be exploited remotely without authentication.
Affected Systems
taisan:tarzan‑cms version 1.0.0 is affected. No other products or versions were listed as vulnerable.
Risk and Exploitability
The CVSS score of 6.9 indicates a moderate severity. The EPSS score is not available, but the flaw is publicly disclosed and can be leveraged remotely. It is not listed in the CISA KEV catalog. Because SSRF can expose internal network addresses or sensitive data, the risk to confidentiality and availability is significant if the attacker can reach the vulnerable endpoint on the admin interface.
OpenCVE Enrichment