[GH-ISSUE #1366] Vulnerability Report: SSRF and Blacklist Bypass leading to Denial of Service (DoS) in TinyFileManager v2.6 #868

Open
opened 2026-03-02 16:01:54 +03:00 by kerem · 0 comments
Owner

Originally created by @Maalfer on GitHub (Jan 1, 2026).
Original GitHub issue: https://github.com/prasathmani/tinyfilemanager/issues/1366

TinyFileManager v2.6 is vulnerable to Server-Side Request Forgery (SSRF), I sent a report at security section of this repo.

Regards!

Originally created by @Maalfer on GitHub (Jan 1, 2026). Original GitHub issue: https://github.com/prasathmani/tinyfilemanager/issues/1366 TinyFileManager v2.6 is vulnerable to Server-Side Request Forgery (SSRF), I sent a report at security section of this repo. Regards!
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/tinyfilemanager#868
No description provided.