CVE-2026-16027: Revenue Administration E-Signature

Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Server-Side request forgery (SSRF) vulnerability in Revenue Administration Türkiye's E-Signature allows Server Side Request Forgery. This issue affects Türkiye's E-Signature: from 2.4.4.0 before 2.5.1.0.

Affected products

Published 2026-08-07. Last modified 2026-08-26.