PT-2026-2106 · Mailpit · Mailpit
Omarkurt
·
Published
2026-01-06
·
Updated
2026-03-27
·
CVE-2026-21859
CVSS v3.1
5.8
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Mailpit versions 1.28.0 and below
Description
Mailpit is an email testing tool and API for developers. A Server-Side Request Forgery (SSRF) exists in the
/proxy endpoint, allowing attackers to make requests to internal network resources. The /proxy endpoint validates http:// and https:// schemes but does not block internal IP addresses, enabling access to internal services and APIs. This is limited to HTTP GET requests with minimal headers.Recommendations
Update Mailpit to version 1.28.1 or later.
Exploit
Fix
SSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mailpit