CVE-2026-59231 Details
Description
Server-Side Request Forgery in the PDF export component in maalfer Pentestify before 1.1.0 allows authenticated users to cause outbound HTTP GET requests from the server to arbitrary attacker-chosen destinations via unvalidated URLs stored in the finding images field or the report client_logo field, which the server-side headless browser fetches while rendering the report.
A server-side request forgery (SSRF) vulnerability has been identified in the PDF export feature of Maalfer Pentestify, prior to version 1.1.0. This vulnerability allows authenticated users to make outbound HTTP GET requests from the server to arbitrary destinations chosen by the attacker. The issue arises from unvalidated URLs stored in the finding images field and the report client_logo field. During report generation, the server-side headless browser fetches these URLs, potentially leading to unauthorized access to internal resources or cloud metadata.
Users are advised to upgrade to Pentestify version 1.1.0 or later, as this vulnerability has been fixed in version 1.1.0.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jul 31, 2026CISA-ADP
Assessed Jul 31, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/ccyl13/Pentestify/commit/a058a22b42c6311895622645265df79a60265b1d | Secur0 | Source CodeVendor |
| https://github.com/ccyl13/Pentestify/releases/tag/v1.1.1 | Secur0 | Release NotesVendor |
| https://secur0.com/en/cna/cve-list/cve-2026-59231-ssrf-in-pentestify-via-unvalidated-image-urls-cve-id-cve-2026-59231 | Secur0 | AdvisoryRemedy |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-918 | Server-Side Request Forgery (SSRF) | Secur0 |
Affected Products
| Product | Versions |
|---|---|
| Maalfer Pentestify | 1.0.0 (semver) |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 31, 2026 | CVE Modified | CISA-ADP |
| Jul 31, 2026 | New CVE Received | Secur0 |
Volerion