AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-66654

MEDIUM · CVSS 6 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Vehica Core versions up to 1.0.104 are vulnerable to a Server Side Request Forgery (SSRF) flaw, which could allow an attacker to manipulate server requests and potentially access sensitive internal resources. Organizations using this software should prioritize patching or mitigating this vulnerability to prevent unauthorized access and protect their internal network.

CVE
CVE-2026-66654
Severity
MEDIUM
CVSS
6
EPSS
0.20%

Original NVD Description

Subscriber Server Side Request Forgery (SSRF) in Vehica Core <= 1.0.104 versions.