CVE-2026-108719
Received Received - Intake

Blind SSRF in LLMGateway via Callback URL

Vulnerability report for CVE-2026-108719, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-11

Last updated on: 2026-10-11

Assigner: VulnCheck

Description

LLMGateway through 1.20.0 contains a blind server-side request forgery vulnerability that allows API key holders to reach internal hosts via the video-generation callback_url extension. Attackers can supply loopback, private, or cloud-metadata URLs that deliverWebhook POSTs to without the assertSafeWebhookTarget check, reaching internal services from the worker's network.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-11
Last Modified
2026-10-11
Generated
2026-10-11
AI Q&A
2026-10-11
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
theopenco LLMGateway 0

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-918 The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

LLMGateway through 1.20.0 has a blind server-side request forgery (SSRF) vulnerability. API key holders can send requests to internal hosts by exploiting the video-generation callback_url parameter. Attackers can provide loopback, private, or cloud-metadata URLs to deliver Webhook POSTs without proper validation, bypassing security checks and reaching internal services from the worker's network.

Detection Guidance

To detect this vulnerability, monitor outbound network traffic from the LLMGateway worker process for unexpected POST requests to internal, loopback, or private IP addresses. Check logs for video-generation callback_url parameters containing suspicious URLs like 127.0.0.1, 169.254.169.254, or internal hostnames. Use network monitoring tools such as tcpdump or Wireshark to capture traffic from the worker's network interface.

Impact Analysis

An attacker with an API key could probe internal network services, potentially accessing sensitive data or internal systems. This could lead to unauthorized access, data leakage, or service disruption in the video processing pipeline. The impact is limited to network reachability probing since responses from internal targets are not returned.

Compliance Impact

This vulnerability could violate compliance requirements by allowing unauthorized network access to internal systems, potentially exposing sensitive data. Organizations using LLMGateway may fail to meet data protection standards like GDPR or HIPAA due to insufficient network isolation and lack of proper input validation.

Mitigation Strategies

Immediately upgrade LLMGateway to a version beyond 1.20.0. If upgrading is not possible, disable the video-generation callback feature entirely by removing or restricting access to the callback_url parameter in video job requests. Implement strict URL validation for all callback URLs, explicitly blocking loopback, private, and metadata service addresses. Review and apply network egress controls to prevent outbound connections to internal IP ranges from the worker process.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-108719. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart