MEDIUM
KnowageLabs
CVE published 2026-01-07
CVE-2025-58441
Knowage, an open-source analytics and business intelligence suite, had a blind server-side request forgery (SSRF) vulnerability prior to version 8.1.37. This vulnerability allowed attackers to send requests to arbitrary hosts or paths but, as the attacker cannot read the response, the impact is limited. However, it can be leveraged to scan the internal network.