What is CVE-2026-32553?
CVE-2026-32553 is an unauthenticated Server Side Request Forgery (SSRF) vulnerability found in OttoKit versions up to and including 1.1.35. This flaw could allow a remote attacker to make unauthorized HTTP requests from the affected server. Users are advised to update to the latest version of the plugin.
Azərbaycanca: CVE-2026-32553, OttoKit plagininin 1.1.35 və daha əvvəlki versiyalarında autentifikasiya tələb etməyən Server Side Request Forgery (SSRF) zəifliyidir. Bu boşluq uzaqdan hücum edən şəxsə server daxilində icazəsiz HTTP sorğuları göndərməyə imkan verə bilər. İstifadəçilərə plaginin ən son versiyasına yeniləmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-918
FAQ2
What software product is affected by CVE-2026-32553?
This SSRF vulnerability affects the OttoKit plugin versions up to and including 1.1.35.
Does an attacker need to be authenticated to exploit this flaw?
No, CVE-2026-32553 is an unauthenticated vulnerability, meaning it can be exploited by a remote attacker.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.