Articles tagged with: #ssrf Clear filter
CISA Warns Of Oracle E-Business Suite SSRF Vulnerability Actively Exploited In Attacks

CISA Warns Of Oracle E-Business Suite SSRF Vulnerability Actively Exploited In Attacks

Cyber Security News cybersecuritynews.com

CISA has issued an urgent alert about a critical server-side request forgery (SSRF) vulnerability in Oracle E-Business Suite, now actively exploited by threat actors. Tracked as CVE-2025-61884, the flaw affects the Runtime component of Oracle Configurator and allows remote attackers to forge requests without authentication, potentially leading to unauthorized access and data exfiltration. This vulnerability,

Critical Zimbra SSRF Vulnerability Let Attackers Access Sensitive Data

Critical Zimbra SSRF Vulnerability Let Attackers Access Sensitive Data

Cyber Security News cybersecuritynews.com

A newly disclosed Server-Side Request Forgery (SSRF) flaw in Zimbra Collaboration Suite has raised major security concerns, prompting administrators to patch systems immediately. The issue, identified in the chat proxy configuration component, could allow attackers to gain unauthorized access to internal resources and sensitive user data. According to Zimbra's latest advisory, this critical SSRF vulnerability