Zammad Server-Side Request Forgery Vulnerability

Vulnerability

A server-side request forgery (SSRF) vulnerability has been identified in Zammad versions 6.4.x prior to 6.4.2. This vulnerability allows authenticated admin users to exploit webhook functionality. When a webhook endpoint returns a redirect, Zammad automatically follows it with a GET request. An attacker could potentially use this to send GET requests to internal resources, such as those on the local network.

Impact

Exploitation of this vulnerability could lead to unauthorized GET requests being sent to internal network resources, potentially allowing an attacker to access or manipulate sensitive information or services.

Remediation

Users are advised to upgrade to Zammad version 6.5.0 or 6.4.2. Fixed releases are available on the Zammad website or via the Zammad FTP site. Users with Zammad installed through an operating system package manager can simply update their installation.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
3.4
impact
0.6
exploitability
5.0
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.