CVE-2026-91943: Crawl4AI before 0.9.3 SSRF via PDFContentScrapingStrategy

Published Sep 15, 2026
·
Updated

Crawl4AI before 0.9.3 contains a server-side request forgery vulnerability in PDFContentScrapingStrategy where getpdfpath() re-downloads targets with Python requests without egress validation. Authenticated attackers can supply URLs that redirect to internal addresses or use DNS rebinding to access internal services, exfiltrating responses through PDF text extraction in crawl results.

Affected Software

1 affected component
Crawl4AI<0.9.3

Event History

Sep 15, 2026
CVE Published
via MITRE·03:18 PM
Data Sourced
via MITRE·03:18 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Who is exposed to this issue?

Deployments of Crawl4AI earlier than 0.9.3 are exposed where authenticated users can supply URLs processed by PDFContentScrapingStrategy. The vulnerable server must be able to make requests to the targeted internal address or service.

2

What does an attacker need to exploit it?

An attacker needs authenticated access and the ability to provide a URL for PDF processing. They can use redirects to internal addresses or DNS rebinding, and retrieve internal service responses through PDF text extraction in crawl results.

3

Is user interaction required?

No. The vulnerability has no user-interaction requirement; an authenticated attacker can trigger the server-side request through the affected processing path.

4

What should be done if patching cannot happen immediately?

The provided data does not specify a workaround. Prioritize restricting authenticated users' ability to submit untrusted URLs to PDFContentScrapingStrategy and limiting the crawler's network access to internal services where possible.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203