PT-2026-20745 · Totalsoft · Ts Poll

Jakub Herman

·

Published

2026-02-19

·

Updated

2026-02-19

·

CVE-2026-25428

CVSS v3.1

4.4

Medium

VectorAV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions totalsoft TS Poll versions through 2.5.5
Description The software contains a Server-Side Request Forgery (SSRF) flaw. This allows for Server Side Request Forgery. The vulnerability exists due to insufficient input validation, potentially allowing an attacker to make requests on behalf of the server.
Recommendations Update totalsoft TS Poll to a version later than 2.5.5.

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2026-25428

Affected Products

Ts Poll