Junglewise Threat Intelligence

CVE-2026-65317: Weaviate Verba SSRF and middleware bypass in /api/connect

CVE-2026-65317 · Severity: high · CVSS 8.6 · Published 2026-07-21

Executive brief

Verba, an open-source application for building AI-powered search tools, contains a security flaw that allows unauthorized individuals to trick the server into making web requests to internal or external systems. By bypassing built-in security checks, an attacker could potentially access sensitive internal data, such as cloud infrastructure credentials or private database information. This could lead to a significant data breach or unauthorized access to the organization's cloud environment.

Technical details

A Server-Side Request Forgery (SSRF) vulnerability exists in the Verba RAG application (up to version 2.1.3) due to insufficient validation of the 'Origin' header and user-supplied host/port parameters. Attackers can bypass the 'localhost' origin check in the API middleware by providing an Origin header prefixed with a single quote ('). Once bypassed, an unauthenticated attacker can use the /api/connect endpoint to force the server to issue outbound GET requests to arbitrary destinations. This can be leveraged to probe internal network services or access sensitive cloud metadata endpoints (e.g., 169.254.169.254). The project has been discontinued and archived, meaning no official patch is expected.

Affected products

  • Weaviate Verba (goldenverba) <= 2.1.3

Timeline

  • 2026-06-02: disclosed: Vulnerability reported to vendor via email.
  • 2026-06-08: other: Repository archived by owner and discontinued.
  • 2026-07-21: advisory: CVE-2026-65317 published.

References