CVE-2025-52362 – PHProxy SSRF

The following table lists the changes that have been made to the
CVE-2025-52362 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Jul. 21, 2025

    Action Type Old Value New Value
    Added Description Server-Side Request Forgery (SSRF) vulnerability exists in the URL processing functionality of PHProxy version 1.1.1 and prior. The input validation for the _proxurl parameter can be bypassed, allowing a remote, unauthenticated attacker to submit a specially crafted URL
    Added Reference https://gist.github.com/Shulelk/a18c11866be8609b22ff5df780a42422
    Added Reference https://github.com/PHProxy/phproxy
Share the Post:

Related Posts