CVE-2024-46413: Getrebuild Rebuild

Medium severity, CVSS 5.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Rebuild v3.7.7 was discovered to contain a Server-Side Request Forgery (SSRF) via the type parameter in the com.rebuild.web.admin.rbstore.RBStoreController#loadDataIndex method.

Affected products

Published 2025-08-25. Last modified 2026-06-17.