Back to overview

CVE-2026-65057

CRITICAL
9.3
CVSS 3.1
Description
Keep (commit 91c75e0) contains a server-side request forgery vulnerability that allows unauthenticated attackers to make the backend issue arbitrary HTTP requests by supplying attacker-controlled host values to the unprotected healthcheck endpoint. Attackers can send a crafted JSON payload with a malicious host parameter to cause the backend to issue outbound requests to internal services or cloud metadata endpoints, enabling theft of cloud credentials and internal network reconnaissance.

Metadata

CVE ID
CVE-2026-65057
State
PUBLISHED
Assigner
VulnCheck
Reserved
2026-07-21 14:05 UTC
Published
2026-07-21 20:56 UTC
Last updated
2026-07-21 20:56 UTC
Primary CWE
CWE-918
Server-Side Request Forgery (SSRF)
Vendor / Product
keephq / keep
Sources
cve.org  ·  NVD

Severity & Metrics

9.3 CRITICAL CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
Affected products (1)
VendorProductPlatformVersions
keephq keep 0 ≤ 91c75e0
Weakness (CWE)
CWESourceDescription
CWE-918 cna Server-Side Request Forgery (SSRF)
CVSS scores (2)
ScoreSeverityVersionSourceVector
9.3 CRITICAL 3.1 cna CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
9.2 CRITICAL 4.0 cna CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:H/SI:L/SA:N
Back to overview