CVE-2019-9187: Ikiwiki
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
ikiwiki before 3.20170111.1 and 3.2018x and 3.2019x before 3.20190228 allows SSRF via the aggregate plugin. The impact also includes reading local files via file: URIs.
Affected products
- Ikiwiki Ikiwiki: before 3.20170111.1 (fixed in 3.20170111.1); from 3.20190207, before 3.20190226 (fixed in 3.20190226); version 3.20180105 only; version 3.20180228 only; version 3.20180311 only
Published 2019-06-05. Last modified 2026-06-17.