Server-Side Request Forgery Vulnerability in Apache OFBiz
CVE-2026-31910
7.5HIGH
What is CVE-2026-31910?
A Server-Side Request Forgery (SSRF) vulnerability exists in Apache OFBiz, affecting versions prior to 24.09.06. This vulnerability can allow an attacker to send crafted requests from the server, potentially leading to unauthorized access to internal services and sensitive data. Users are strongly advised to upgrade to version 24.09.06 to mitigate this risk and ensure the security of their applications.
Affected Version(s)
Apache OFBiz 0 < 24.09.06