Description
KUNO CMS is a fully deployable full-stack blog application. In versions prior to 1.3.15, an SSRF (Server-Side Request Forgery) vulnerability exists in the Media module of the Kuno CMS administrative panel. A logged-in administrator can upload a specially crafted SVG file containing an external image reference, causing the server to initiate an outgoing connection to an arbitrary external URL. This can lead to information disclosure or internal network probing. Version 1.3.15 contains a fix for the issue.
References (3)
Core 3
Core References
Vendor Advisory x_refsource_confirm
https://github.com/xuemian168/kuno/security/advisories/GHSA-4f5f-2c49-5mwm
Patch x_refsource_misc
https://github.com/xuemian168/kuno/commit/804b2909c65b16ae2063d0f992e0711aa09475e2
Release Notes x_refsource_misc
https://github.com/xuemian168/kuno/releases/tag/v1.3.15
Scores
CVSS v4
5.1
EPSS
0.0009
EPSS Percentile
25.2%
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:L/SC:L/SI:N/SA:N
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
partial
Details
CWE
CWE-20
CWE-434
CWE-918
Status
published
Products (1)
xuemian168/kuno
< 1.3.15
Published
Oct 06, 2025
Tracked Since
Feb 18, 2026