CyberRota Analysis
AI-GeneratedThe vulnerability allows unauthenticated attackers to exploit a server-side request forgery in the healthcheck endpoint, enabling them to send arbitrary HTTP requests to internal services or cloud metadata endpoints. This could lead to the theft of sensitive cloud credentials and facilitate internal network reconnaissance. Organizations using affected products should prioritize patching this critical vulnerability to mitigate potential data breaches and unauthorized access.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Keep (commit 91c75e0) contains a server-side request forgery vulnerability that allows unauthenticated attackers to make the backend issue arbitrary HTTP requests by supplying attacker-controlled host values to the unprotected healthcheck endpoint. Attackers can send a crafted JSON payload with a malicious host parameter to cause the backend to issue outbound requests to internal services or cloud metadata endpoints, enabling theft of cloud credentials and internal network reconnaissance.