CVE-2026-103530
HIGH
NVD
CVSS Score
7.3
Severity
HIGH
Published
Oct 01, 2026
Vendor
unknown
Description
A vulnerability was detected in decolua 9Router up to 0.5.55. The affected element is the function fetch of the file src/shared/utils/ssrfGuard.js of the component Search Endpoint. Performing a manipulation of the argument provider_options.baseUrl results in server-side request forgery. The attack can be initiated remotely. Applying a patch is the recommended action to fix this issue.