CVE-2026-15732: WGDashboard Server-Side Request Forgery Vulnerability
A Server-Side Request Forgery (SSFR) vulnerability exist in WGDashboard version 4.2.3 and earlier. The webhook functionality allows authenticated attackers to make arbitrary HTTP requests and retrieve responses.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-15732?
CVE-2026-15732 has a risk score of 47, indicating a significant level of concern for security.
How do I fix CVE-2026-15732?
To fix CVE-2026-15732, upgrade WGDashboard to version 4.3.2 or later, which addresses the server-side request forgery vulnerability.
What specific vulnerability does CVE-2026-15732 contain?
CVE-2026-15732 contains a server-side request forgery (SSRF) vulnerability that allows authenticated attackers to make arbitrary HTTP requests.
Which versions of WGDashboard are affected by CVE-2026-15732?
WGDashboard versions 4.2.3 and earlier are affected by CVE-2026-15732.
What is the potential impact of exploiting CVE-2026-15732?
Exploiting CVE-2026-15732 could enable attackers to compromise services or access sensitive data through unauthorized HTTP requests.