CVE-2019-9827: Hawt Hawtio
Critical severity, CVSS 9.8. EPSS: 26.8% chance of exploitation in the next 30 days.
Hawt Hawtio through 2.5.0 is vulnerable to SSRF, allowing a remote attacker to trigger an HTTP request from an affected server to an arbitrary host via the initial /proxy/ substring of a URI.
Affected products
- Hawt Hawtio: up to and including 2.5.0
Published 2019-07-03. Last modified 2026-06-17.