CVE-2025-45869

LogicalDOC Enterprise Version up to and before v9.1.1 is vulnerable to Server-Side Request Forgery (SSRF). An unauthenticated attacker can exploit the ShareFileCallback servlet by manipulating input parameters to trigger a server-side request to an attacker-controlled host.
Configurations

No configuration.

History

No history.

Information

Published : 2026-07-13 19:16

Updated : 2026-07-13 20:37


NVD link : CVE-2025-45869

Mitre link : CVE-2025-45869

CVE.ORG link : CVE-2025-45869


JSON object : View

Products Affected

No product.

CWE
CWE-918

Server-Side Request Forgery (SSRF)