PT-2026-34563 · Squidex · Squidex

Published

2026-04-22

·

Updated

2026-04-22

·

CVE-2026-41170

CVSS v4.0

8.5

High

AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
Squidex is an open source headless content management system and content management hub. Prior to version 7.23.0, the RestoreController.PostRestoreJob endpoint allows an administrator to supply an arbitrary URL for downloading backup archives. This URL is fetched using the "Backup" HttpClient without any SSRF protection. A malicious or compromised admin can use this endpoint to probe internal network services, access cloud metadata endpoints, or perform internal reconnaissance. The vulnerability is authenticated (Admin-only) but highly impactful, allowing potential access to sensitive internal resources. Version 7.23.0 contains a fix.

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2026-41170

Affected Products

Squidex