Junglewise Threat Intelligence

CVE-2026-45806: Penpot SSRF in remote image import

CVE-2026-45806 · Severity: high · CVSS 7.7 · Published 2026-07-15

Technologies: Penpot. Vendors: Penpot.

Executive brief

Penpot is an open-source design and prototyping platform used by teams to collaborate on user interfaces. A security flaw in the image import feature allows users with file editing permissions to force the Penpot server to make requests to internal network locations. This could allow an attacker to bypass firewalls to access sensitive internal data, map private infrastructure, or interact with other internal services that are not intended to be public.

Technical details

An authenticated Server-Side Request Forgery (SSRF) exists in Penpot's remote image import workflow. The vulnerability occurs because the backend RPC method ':create-file-media-object-from-url' passes user-supplied URLs to a shared HTTP client that lacks destination filtering for loopback (127.0.0.1), private (RFC1918), or link-local addresses. Furthermore, the client is configured to follow redirects automatically, allowing an attacker to bypass initial checks by redirecting a public URL to an internal target. An attacker with 'file editor' privileges can exploit this to probe internal network services or retrieve sensitive data from internal endpoints that return image-like content types. The issue is resolved in version 2.15.0 by implementing destination controls and redirect validation.

Affected products

  • Penpot Penpot < 2.15.0

Timeline

  • 2026-03-25: other: Local validation and PoC completed by researchers
  • 2026-05-12: patched: Version 2.15.0 released
  • 2026-05-19: advisory: GitHub Security Advisory published
  • 2026-07-15: disclosed: CVE-2026-45806 published to NVD

References

Related threats