{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/mindsdb--26.1.0/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:mindsdb:mindsdb:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-86173"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["MindsDB (\u003c= 26.1.0)"],"_cs_severities":["high"],"_cs_tags":["web-application","ssrf","vulnerability"],"_cs_type":"advisory","_cs_vendors":["MindsDB"],"content_html":"\u003cp\u003eMindsDB versions up to and including 26.1.0 contain a Server-Side Request Forgery (SSRF) vulnerability within the web crawler handler. The flaw exists in the 'CrawlerTable.list' function, which fails to properly validate user-supplied URLs. Due to a default empty configuration for the allowlist, an unauthenticated attacker can supply arbitrary target URLs to the crawler. This allows the application to be coerced into making outbound requests on behalf of the server. The vulnerability is significant as it provides a mechanism to bypass network perimeters, potentially leading to unauthorized interaction with internal services or the exfiltration of sensitive cloud instance metadata. Defenders should treat this as a high-priority risk if the MindsDB instance is deployed within a cloud environment or has access to internal network segments.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows attackers to perform reconnaissance on internal networks, access hidden services, or retrieve sensitive configuration and authentication data from cloud metadata services. This could facilitate lateral movement or further exploitation of infrastructure components within the target organization.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade MindsDB to a version beyond 26.1.0 as soon as a patch is available.\u003c/li\u003e\n\u003cli\u003eImplement restrictive network egress policies for the MindsDB application host to prevent access to internal RFC1918 address space and cloud metadata IP addresses (e.g., 169.254.169.254).\u003c/li\u003e\n\u003cli\u003eConfigure the MindsDB crawler allowlist explicitly, rather than relying on default settings, to restrict permissible target domains.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-05T11:32:01Z","date_published":"2026-09-05T11:32:01Z","id":"https://feed.craftedsignal.io/briefs/2026-09-mindsdb-ssrf/","summary":"MindsDB versions 26.1.0 and earlier are vulnerable to unauthenticated server-side request forgery (SSRF) in the web crawler handler, enabling unauthorized access to internal resources and cloud metadata.","title":"Unauthenticated SSRF Vulnerability in MindsDB Crawler","url":"https://feed.craftedsignal.io/briefs/2026-09-mindsdb-ssrf/"}],"language":"en","title":"CraftedSignal Threat Feed - MindsDB (\u003c= 26.1.0)","version":"https://jsonfeed.org/version/1.1"}