Gophish 0.11.0 through 0.12.1 contains a server-side request forgery vulnerability that allows authenticated low-privileged users to reach loopback and private hosts via POST /api/import/site. Attackers can submit internal URLs, which the default dialer deny list does not block, to read service responses and enumerate internal hosts and ports through error messages.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 07 Oct 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Gophish 0.11.0 through 0.12.1 contains a server-side request forgery vulnerability that allows authenticated low-privileged users to reach loopback and private hosts via POST /api/import/site. Attackers can submit internal URLs, which the default dialer deny list does not block, to read service responses and enumerate internal hosts and ports through error messages. | |
| Title | Gophish 0.11.0 through 0.12.1 SSRF via POST /api/import/site | |
| First Time appeared |
Getgophish
Getgophish gophish |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:getgophish:gophish:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Getgophish
Getgophish gophish |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-10-07T15:44:06.444Z
Reserved: 2026-10-07T15:34:12.102Z
Link: CVE-2026-107273
No data.
Status : Deferred
Published: 2026-10-07T16:17:47.033
Modified: 2026-10-07T16:17:47.160
Link: CVE-2026-107273
No data.
OpenCVE Enrichment
No data.
Weaknesses