CVE-2025-45869

LogicalDOC Enterprise Version up to and before v9.1.1 is vulnerable to Server-Side Request Forgery (SSRF). An unauthenticated attacker can exploit the ShareFileCallback servlet by manipulating input parameters to trigger a server-side request to an attacker-controlled host.
Configurations

No configuration.

History

13 Jul 2026, 20:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.3
CWE CWE-918

13 Jul 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-13 19:16

Updated : 2026-07-13 20:37


NVD link : CVE-2025-45869

Mitre link : CVE-2025-45869

CVE.ORG link : CVE-2025-45869


JSON object : View

Products Affected

No product.

CWE
CWE-918

Server-Side Request Forgery (SSRF)