{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/vendors/label-studio/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:labelstudio:label_studio:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":8.5,"id":"CVE-2026-85179"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Label Studio (\u003c= 1.23.0)"],"_cs_severities":["high"],"_cs_tags":["ssrf","web-application","data-exfiltration"],"_cs_type":"advisory","_cs_vendors":["Label Studio"],"content_html":"\u003cp\u003eLabel Studio versions through 1.23.0 contain a Server-Side Request Forgery (SSRF) vulnerability due to insufficient validation of webhook URLs. This vulnerability allows an authenticated user to craft malicious webhook requests that reach internal network resources, including those residing on RFC 1918 address spaces and cloud instance metadata services (e.g., 169.254.169.254).\u003c/p\u003e\n\u003cp\u003eBy manipulating the webhook configuration, an attacker can force the Label Studio server to perform outbound requests on their behalf. This can be weaponized to interact with internal APIs that lack authentication or to exfiltrate sensitive environment configuration data and annotation datasets. The impact is significant for organizations hosting Label Studio within sensitive internal network segments or cloud environments where internal service discovery relies on metadata endpoints.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows authenticated attackers to bypass network perimeters, potentially leading to unauthorized data exfiltration of sensitive annotations, reconnaissance of internal network infrastructure, and compromise of internal services accessible from the Label Studio host.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the identification and patching of Label Studio instances running version 1.23.0 or earlier. Audit current webhook configurations to identify any entries pointing to internal IP addresses or private domain namespaces.\u003c/p\u003e\n","date_modified":"2026-09-03T15:22:01Z","date_published":"2026-09-03T15:22:01Z","id":"https://feed.craftedsignal.io/briefs/2026-09-label-studio-ssrf/","summary":"Label Studio versions up to 1.23.0 are vulnerable to Server-Side Request Forgery due to improper webhook URL validation, allowing authenticated attackers to target internal network services.","title":"Label Studio SSRF via Webhook URL Validation Bypass","url":"https://feed.craftedsignal.io/briefs/2026-09-label-studio-ssrf/"}],"language":"en","title":"CraftedSignal Threat Feed - Label Studio","version":"https://jsonfeed.org/version/1.1"}