Server-Side request forgery (SSRF) vulnerability in Revenue Administration Türkiye's E-Signature allows Server Side Request Forgery.
This issue affects Türkiye's E-Signature: from 2.4.4.0 before 2.5.1.0.
This issue affects Türkiye's E-Signature: from 2.4.4.0 before 2.5.1.0.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 07 Aug 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated WebSocket-to-XAdES SSRF in Revenue Administration of Türkiye's E-Signature | Unauthenticated WebSocket-to-XAdES SSRF in Revenue Administration's E-Signature |
Fri, 07 Aug 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Server-Side request forgery (SSRF) vulnerability in Revenue Administration Türkiye's E-Signature allows Server Side Request Forgery. This issue affects Türkiye's E-Signature: from 2.4.4.0 before 2.5.1.0. | |
| Title | Unauthenticated WebSocket-to-XAdES SSRF in Revenue Administration of Türkiye's E-Signature | |
| Weaknesses | CWE-918 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2026-08-07T08:54:04.344Z
Reserved: 2026-07-17T08:21:50.945Z
Link: CVE-2026-16027
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-07T08:30:04Z
Weaknesses