CVE-2025-9821

Source
https://cve.org/CVERecord?id=CVE-2025-9821
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-9821.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-9821
Aliases
Published
2025-09-03T09:39:01.005Z
Modified
2026-07-15T01:49:15.166696905Z
Severity
  • 2.7 (Low) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N CVSS Calculator
Summary
SSRF via webhook function
Details

SummaryUsers with webhook permissions can conduct SSRF via webhooks. If they have permission to view the webhook logs, the (partial) request response is also disclosed

DetailsWhen sending webhooks, the destination is not validated, causing SSRF.

ImpactBypass of firewalls to interact with internal services. See https://owasp.org/Top10/A102021-Server-SideRequestForgery%28SSRF%29/  for more potential impact.

Resources https://cheatsheetseries.owasp.org/cheatsheets/ServerSideRequestForgeryPreventionCheatSheet.html  for more information on SSRF and its fix.

Database specific
{
    "unresolved_ranges": [
        {
            "extracted_events": [
                {
                    "introduced": ">= 4.4.0"
                },
                {
                    "last_affected": "< 4.4.17"
                }
            ],
            "source": "AFFECTED_FIELD"
        }
    ],
    "cwe_ids": [
        "CWE-918"
    ],
    "cna_assigner": "Mautic",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/9xxx/CVE-2025-9821.json"
}
References

Affected packages

Git / github.com/mautic/mautic

Affected ranges

Type
GIT
Repo
https://github.com/mautic/mautic
Events
Database specific
{
    "extracted_events": [
        {
            "introduced": ">= 5.0.0-alpha"
        },
        {
            "last_affected": "< 5.2.8"
        },
        {
            "introduced": ">= 6.0.0-alpha"
        },
        {
            "last_affected": "< 6.0.5"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

5.*
5.0.0
5.0.0-alpha
5.0.0-alpha1
5.0.0-beta1
5.0.0-beta2
5.0.0-rc1
5.0.0-rc2
5.1.0
5.2.0
5.2.1
5.2.2
5.2.3
5.2.4
5.2.5
5.2.6
5.2.8
6.*
6.0.0
6.0.0-alpha
6.0.0-beta2
6.0.0-rc
6.0.1
6.0.2
6.0.3
6.0.4
6.0.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-9821.json"