Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-59085

Server-Side Request Forgery (SSRF) vulnerability in Apache CloudStack's webhook module, exploitable via webhook delivery requests. This issue affects Apache CloudStack: from 4.20.0.0 through 4.20.3.0 and from 4.21.0.0 through 4.22.1.0. Users are recommended to upgrade to version 4.20.3.1 or 4.22.1.1 or later, which fixes the issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 25.0%
CVSS Severity
CVSS v3 Score 9.1
Products affected by CVE-2026-59085


Contact Us

Shodan ® - All rights reserved