Breaking
SecurityDeveloping Story

Critical SSRF Vulnerability Discovered in stoatchat Versions Below 0.13.5

A critical server-side request forgery vulnerability in stoatchat allows unauthenticated attackers to access internal network infrastructure.

··1 month ago·1 min read
a close up of a network with wires connected to it
Photo by Albert Stoynov on Unsplash

A critical security vulnerability, tracked as CVE-2026-63306, has been identified in stoatchat versions prior to 0.13.5. The flaw exists within the /proxy and /embed endpoints, which fail to implement proper DNS resolution filtering or private IP range validation when processing user-supplied URLs.

This server-side request forgery vulnerability allows unauthenticated attackers to supply malicious URLs to the affected endpoints. By leveraging this flaw, unauthorized actors can enumerate internal services, fingerprint applications, and reach sensitive instance metadata endpoints, potentially exposing internal infrastructure.

With a CVSS score of 8.6, this vulnerability is classified as critical. Users are advised to update to version 0.13.5 or later to mitigate the risk of unauthorized access to internal systems.

#vulnerability#ssrf#stoatchat#cve-2026-63306

Sources

Iliyas

Founder & Editor, Xploitwire

This article was compiled from the sources listed above and checked against them for accuracy, under editorial policies set by Iliyas. Read our Editorial Policy →

← Back to all stories