PatchSiren

KnowageLabs CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM KnowageLabs CVE published 2026-01-07

CVE-2025-58441

Knowage, an open-source analytics and business intelligence suite, had a blind server-side request forgery (SSRF) vulnerability prior to version 8.1.37. This vulnerability allowed attackers to send requests to arbitrary hosts or paths but, as the attacker cannot read the response, the impact is limited. However, it can be leveraged to scan the internal network.