THREAT OPS › Threat News › [GHSA] GHSA-8g4w-4ffg-8vgx (high) — 9Router: Authenticated Server-Side Request Forgery (SSRF) via OIDC Provider Test Endpoint
[GHSA] GHSA-8g4w-4ffg-8vgx (high) — 9Router: Authenticated Server-Side Request Forgery (SSRF) via OIDC Provider Test Endpoint
GHSA-8g4w-4ffg-8vgx Severity: high CVE: CVE-2026-56677
9Router: Authenticated Server-Side Request Forgery (SSRF) via OIDC Provider Test Endpoint
### Summary
A Server-Side Request Forgery (SSRF) vulnerability exists in the 9Router dashboard via the `/api/auth/oidc/test` endpoint. The application accepts a user-controlled URL string through the `issuerUrl` parameter and performs an outbound HTTP
MITRE ATT&CK techniques
Indicators of compromise
- CVE-2026-56677cve
- http://127.0.0.1:$port/url
- http://127.0.0.1url
- http://127.0.0.1/oauth/authurl
- http://127.0.0.1/oauth/tokenurl
- http://127.0.0.1/oauth/keysurl
- http://127.0.0.1:80url
- https://`url
- 10.0.0.0/8cidr
- 192.168.0.0/16cidr
- 127.0.0.0/8cidr
- 172.16.0.0/12cidr
Original source: https://github.com/advisories/GHSA-8g4w-4ffg-8vgx