CVE-2026-84207
Heym before 0.0.98 fails to apply SSRF egress guards to WebSocket Send and WebSocket Trigger nodes, allowing authenticated users to connect to internal services. Attackers can craft workflow nodes with arbitrary URLs and headers to reach internal services and read responses from the WebSocket Trigger node.
Słabość
Heym before 0.0.98 fails to apply SSRF egress guards to WebSocket Send and WebSocket Trigger nodes, allowing authenticated users to connect to internal services. Attackers can craft workflow nodes with arbitrary URLs and headers to reach internal services and read responses from the WebSocket Trigger node.
Źródła
- https://github.com/heymrun/heym
- https://github.com/heymrun/heym/blob/v0.0.97/backend/app/services/websocket_trigger_service.py
- https://github.com/heymrun/heym/blob/v0.0.97/backend/app/services/websocket_utils.py
- https://github.com/heymrun/heym/commit/540aade7c7495295062f32f4dfd0d6805f066f0c
- https://github.com/heymrun/heym/releases/tag/v0.0.98
- https://github.com/heymrun/heym/security/advisories/GHSA-mqw6-g845-w596
Znajdź błąd, zanim zrobi to atakujący.
Zaloguj się przez GitHub i uruchom pierwszy audyt w niecałą minutę. Plan darmowy nie wymaga karty kredytowej.