What is CVE-2026-54885?
CVE-2026-54885 is a Server-Side Request Forgery vulnerability in malach-it Boruta that allows an unauthenticated remote attacker to force the OAuth/OpenID authorization server to issue HTTP requests to attacker-chosen URIs, including internal services and cloud metadata endpoints. Three code paths are reported to fetch remote URIs.
Azərbaycanca: CVE-2026-54885, malach-it Boruta-da aşkarlanmış Server-Side Request Forgery (SSRF) zəifliyidir. Bu zəiflik autentifikasiya olunmamış uzaq təcavüzkarın OAuth/OpenID avtorizasiya serverini daxili xidmətlərə və bulud metadata endpoint-lərinə sorğu göndərməyə məcbur etməsinə imkan verir. Üç fərqli kod yolu ilə uzaq URI-lərə sorğu göndərildiyi üçün mümkün qədər tez yeniləmə tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-918
FAQ2
Does exploiting CVE-2026-54885 require the attacker to be authenticated?
No, this vulnerability can be exploited by an unauthenticated remote attacker.
What kind of targets can an attacker force requests to via CVE-2026-54885?
An attacker can force the OAuth/OpenID authorization server to issue HTTP requests to internal services and cloud metadata endpoints.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.