Known CVE
Dozzle - Server Side Request Forgery
Dozzle prior to 10.5.2 contains a server-side request forgery caused by unauthenticated access to POST /api/notifications/test-webhook forwarding attacker-controlled URLs, letting remote attackers send arbitrary HTTP POST requests and receive response data, exploit requires no authentication.
CVE-2026-45298
High2026CVSS 8.6CWE-918
cve2026 · ssrf · dozzle · vkev
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website