A legacy endpoint in Command Center contained an unauthenticated server-side request forgery (SSRF) vulnerability related to the handling of arbitrary target URLs. Software customers upgrade to resolved maintenance release. Update Command Center.

Project Subscriptions

No data.

Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 11 Aug 2026 16:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-918

Tue, 11 Aug 2026 11:30:00 +0000

Type Values Removed Values Added
Description A legacy endpoint in Command Center contained an unauthenticated server-side request forgery (SSRF) vulnerability related to the handling of arbitrary target URLs. Software customers upgrade to resolved maintenance release. Update Command Center.
Title Server-Side Request Forgery (SSRF)
References
Metrics cvssV4_0

{'score': 8.8, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Commvault

Published:

Updated: 2026-08-11T14:13:35.906Z

Reserved: 2026-06-29T14:54:17.751Z

Link: CVE-2026-13739

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-11T12:17:38.047

Modified: 2026-08-11T15:17:27.550

Link: CVE-2026-13739

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-11T16:45:03Z

Weaknesses