CVE-2025-68696: Jnunemaker Httparty
High severity, CVSS 8.2. EPSS: 0.3% chance of exploitation in the next 30 days.
httparty is an API tool. In versions 0.23.2 and prior, httparty is vulnerable to SSRF. This issue can pose a risk of leaking API keys, and it can also allow third parties to issue requests to internal servers. This issue has been patched via commit 0529bcd.
Affected products
- Jnunemaker Httparty: before 0.24.0 (fixed in 0.24.0)
Published 2025-12-23. Last modified 2026-06-17.