OSLabs ThermaKube Server-Side Request Forgery Vulnerability

Vulnerability

A server-side request forgery (SSRF) vulnerability has been identified in the OSLabs ThermaKube application, specifically in the master branch. This vulnerability allows attackers to manipulate the server into making unintended requests to internal or external services, which could result in unauthorized access or information disclosure.

Impact

Exploitation of this vulnerability could lead to server-side request forgery, allowing attackers to make unauthorized requests from the server's context.

Added: Mar 9, 2026, 4:21 PM
Updated: Mar 9, 2026, 4:21 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
6.8
remediation
0.0
relevance
3.7
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.