Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-3mp7-vp6j-2mxx | BBOT: Server-Side Request Forgery (SSRF) in docker_pull module via WWW-Authenticate realm parsing |
Sun, 21 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Black Lantern Security
Black Lantern Security bbot |
|
| Vendors & Products |
Black Lantern Security
Black Lantern Security bbot |
Thu, 18 Jun 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The docker_pull module uses the realm parameter from a Docker registry's WWW-Authenticate response header as the authentication endpoint without validation. An attacker in a man-in-the-middle position between bbot and a Docker registry could modify this header to redirect the authentication request to an arbitrary endpoint, potentially leaking authentication tokens. | |
| Title | SSRF via unvalidated WWW-Authenticate realm in docker_pull module | |
| Weaknesses | CWE-918 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: BLSOPS
Published:
Updated: 2026-06-18T12:50:35.439Z
Reserved: 2026-06-17T21:45:54.435Z
Link: CVE-2026-12566
Updated: 2026-06-18T12:50:31.999Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-20T22:56:51Z
Github GHSA