CVE-2025-9960

Severity CVSS v4.0:
MEDIUM
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
22/09/2025
Last modified:
15/04/2026

Description

A restriction bypass vulnerability in is-localhost-ip could allow attackers to perform Server-Side Request Forgery (SSRF).<br /> This issue affects is-localhost-ip: 2.0.0.