No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 24 Sep 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 20 Sep 2026 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
1panel-dev
1panel-dev cordyscrm |
|
| Vendors & Products |
1panel-dev
1panel-dev cordyscrm |
Fri, 18 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. In version 1.7.3, ApprovalResourceService.sendWebHook reads WebHookConfig.webHookUrl from stored approval-node configuration and passes it through ApprovalFlowService.updateApprovalPostField to HttpClientUtils without the SSRF validation used by the optional testConnect path. A user with PROCESS_SETTING_ADD can configure an internal URL through POST /approval-flow/add and cause the server to request it when POST /approval-action/approve executes the approval action, enabling cloud metadata access, internal network reconnaissance, and interaction with reachable internal services. This issue is fixed in version 1.7.4. | |
| Title | CordysCRM: SSRF via Approval Flow Webhook Execution due to Missing SSRF Validation at Runtime | |
| Weaknesses | CWE-918 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-09-22T15:42:38.566Z
Reserved: 2026-08-19T22:43:14.890Z
Link: CVE-2026-76900
Updated: 2026-09-22T15:42:30.979Z
Status : Deferred
Published: 2026-09-18T20:17:21.807
Modified: 2026-09-24T21:25:27.050
Link: CVE-2026-76900
No data.
OpenCVE Enrichment
Updated: 2026-09-20T00:15:06Z