CVE-2026-27600 | sysadminsmedia homebox 0.20.1/0.24.0 Response Body server-side request forgery (GHSA-cm7p-5mg5-82pm)
A vulnerability has been found in sysadminsmedia homebox 0.20.1/0.24.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Response Body Handler. Performing a manipulation results in server-side request forgery.
This vulnerability is known as CVE-2026-27600. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.