Skip to content

Menu
  • Home
Menu

CVE-2026-56677 – 9Router: Authenticated Server-Side Request Forgery (SSRF) via OIDC Provider Test Endpoint

Posted on August 18, 2026
CVE ID :CVE-2026-56677

Published : Aug. 17, 2026, 10:17 p.m. | 1 hour, 56 minutes ago

Description :9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint in src/app/api/auth/oidc/test/route.js passes the user-controlled issuerUrl parameter to fetchOidcDiscovery() in src/lib/auth/oidc.js without restricting private or loopback destinations, allowing unauthenticated attackers when dashboard login is disabled to scan internal services and reflect OIDC discovery fields including token_endpoint and jwks_uri.

Severity: 8.6 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Post Views: 2

Site map

  • About Us
  • Privacy Policy
  • Terms & Conditions of Use
©2026 | Design: Newspaperly WordPress Theme