PatchSiren

perfree CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM perfree CVE published 2026-06-06

CVE-2026-11437

A vulnerability was found in perfree go-fastdfs-web up to 1.3.7. The function checkServer in the file /install/checkServer of the Installation Endpoint is affected, allowing for server-side request forgery (SSRF). The attack can be executed remotely. The exploit has been published and may be used.