{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aopen_notebookopen_notebook/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:open_notebook:open_notebook:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.7,"id":"CVE-2026-90769"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Open Notebook (\u003c 1.11.0)"],"_cs_severities":["high"],"_cs_tags":["ssrf","web-application","vulnerability"],"_cs_type":"advisory","_cs_vendors":["Open Notebook"],"content_html":"\u003cp\u003eOpen Notebook versions before 1.11.0 contain a Server-Side Request Forgery (SSRF) vulnerability within the POST /api/sources endpoint. This flaw arises from insufficient validation of the 'URL' parameter, which allows an authenticated user to force the application server to perform arbitrary outbound HTTP requests. By manipulating this parameter, an attacker can proxy requests to interact with internal network services, resources bound to localhost, or sensitive cloud metadata services. Because the request originates from the application server itself, it bypasses network-level access controls that might otherwise protect these internal resources. This vulnerability is particularly critical in cloud-hosted environments where metadata services (such as the AWS Instance Metadata Service) can be used to extract sensitive security credentials or instance information.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows authenticated users to pivot from the application layer into the internal network, potentially accessing restricted management interfaces, services not exposed to the public, or sensitive cloud environment data. This facilitates reconnaissance and potential credential theft, which may lead to further system compromise within the internal infrastructure.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eUpgrade Open Notebook to version 1.11.0 or later to implement URL validation on the /api/sources endpoint.\u003c/li\u003e\n\u003cli\u003eReview application logs for unusual POST requests to /api/sources where the 'URL' parameter contains private IP ranges (e.g., 10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) or common metadata endpoints (e.g., 169.254.169.254).\u003c/li\u003e\n\u003cli\u003eImplement network egress filtering on the application server to restrict outbound connections to only necessary external domains.\u003c/li\u003e\n\u003c/ol\u003e\n","date_modified":"2026-09-13T11:25:52Z","date_published":"2026-09-13T11:25:52Z","id":"https://feed.craftedsignal.io/briefs/2026-09-open-notebook-ssrf/","summary":"Open Notebook versions prior to 1.11.0 contain a Server-Side Request Forgery vulnerability allowing authenticated users to probe internal network services and cloud metadata endpoints.","title":"SSRF Vulnerability in Open Notebook /api/sources Endpoint","url":"https://feed.craftedsignal.io/briefs/2026-09-open-notebook-ssrf/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:open_notebook:open_notebook:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}