Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 27 Aug 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in cyberchitta scrapling-fetch-mcp up to 0.2.2. The impacted element is the function s_fetch_page/s_fetch_pattern of the file src/scrapling_fetch_mcp/_fetcher.py. Executing a manipulation can lead to server-side request forgery. The attack can be launched remotely. Upgrading to version 0.2.3 is sufficient to resolve this issue. This patch is called 9f6f34e92c55c3d95566ad9c62aca7327d24533a. Upgrading the affected component is advised. | |
| Title | cyberchitta scrapling-fetch-mcp _fetcher.py s_fetch_pattern server-side request forgery | |
| First Time appeared |
Cyberchitta
Cyberchitta scrapling-fetch-mcp |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:cyberchitta:scrapling-fetch-mcp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Cyberchitta
Cyberchitta scrapling-fetch-mcp |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-28T17:44:17.988Z
Reserved: 2026-08-27T16:19:53.615Z
Link: CVE-2026-81848
No data.
Status : Deferred
Published: 2026-08-28T00:18:22.513
Modified: 2026-08-28T20:20:13.803
Link: CVE-2026-81848
No data.
OpenCVE Enrichment
Updated: 2026-08-28T16:13:13Z
-
CWE-918
Server-Side Request Forgery (SSRF)