What is CVE-2026-47695?
CVE-2026-47695: The HTTP API in the CC: Tweaked Minecraft mod allowed bypassing SSRF protection against private network ranges before version 1.119.0. This vulnerability enables attackers to send unauthorized requests to internal network resources. Users must update the mod immediately and implement network filtering rules on the server.
Azərbaycanca: CVE-2026-47695: CC: Tweaked modunda Minecraft serverləri üçün mövcud olan HTTP API-də SSRF (Server-Side Request Forgery) qorunması 1.119.0 versiyasına qədər bypass oluna bilir. Bu zəiflik daxili şəbəkə resurslarına icazəsiz sorğular göndərməyə imkan verərək təhlükəsizlik divarını aşır. İstifadəçilər dərhal modu ən son versiyaya yeniləməli və server tərəfində şəbəkə filtrləmə qaydalarını tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-918
FAQ2
Up to which version does CVE-2026-47695 affect the CC: Tweaked mod?
The vulnerability exists in CC: Tweaked mod versions before 1.119.0.
What two main security measures are recommended to users regarding CVE-2026-47695?
Users are recommended to update the mod to the latest version immediately and implement network filtering rules on the server side.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.