Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-4233-jc72-56c5 | Astro: Netlify Image CDN allowlist bypass enables SSRF |
Wed, 30 Sep 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Withastro
Withastro astro Withastro netlify |
|
| Vendors & Products |
Withastro
Withastro astro Withastro netlify |
Wed, 30 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Astro is a web framework for content-driven websites. From 5.2.0 until 8.2.4, the @astrojs/netlify adapter generates regular expressions for Netlify Image CDN remote-image allowlists without anchoring them to the beginning of the URL. Because Netlify evaluates these expressions with RegExp.test(), an allowed origin appearing only in a source URL's path or query can satisfy image.domains or image.remotePatterns while the URL's actual host remains attacker-controlled. An unauthenticated request to the public /.netlify/images endpoint can therefore cause the Image CDN to request attacker-selected URLs and may probe or reach internal services. Netlify egress protections may constrain reachable targets, and image transformation limits direct response exfiltration; no confidentiality or integrity impact has been demonstrated. This issue is fixed in version 8.2.4. | |
| Title | Astro: Netlify Image CDN allowlist bypass enables SSRF | |
| Weaknesses | CWE-625 CWE-918 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-09-30T16:24:47.048Z
Reserved: 2026-09-29T20:46:08.333Z
Link: CVE-2026-102983
No data.
Status : Awaiting Analysis
Published: 2026-09-30T15:22:22.800
Modified: 2026-09-30T19:38:27.293
Link: CVE-2026-102983
No data.
OpenCVE Enrichment
Updated: 2026-09-30T20:33:13Z
Github GHSA