This issue affects Weoll: before 3.2.45.44.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 23 Sep 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Global It Informatics Technology Services
Global It Informatics Technology Services weoll |
|
| Vendors & Products |
Global It Informatics Technology Services
Global It Informatics Technology Services weoll |
Wed, 23 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 23 Sep 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Server-Side request forgery (SSRF) vulnerability in Global IT Informatics Technology Services Inc. Weoll allows Server Side Request Forgery. This issue affects Weoll: before 3.2.45.44. | |
| Title | SSRF Leading to JWT Token Disclosure in Global IT Informatics' Weoll | |
| Weaknesses | CWE-918 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2026-09-23T12:39:30.130Z
Reserved: 2026-08-20T11:44:34.990Z
Link: CVE-2026-77112
Updated: 2026-09-23T12:39:26.384Z
Status : Received
Published: 2026-09-23T13:17:29.680
Modified: 2026-09-23T13:17:29.680
Link: CVE-2026-77112
No data.
OpenCVE Enrichment
Updated: 2026-09-23T15:36:49Z