Nov 2025 Security Advisory
Server-Side Request Forgery (SSRF) Vulnerability in File Loader Endpoints
1. Vulnerability Description
Impact:
2. Fixes in the upcoming patch to Mitigate the Vulnerability
2.1 Strict Protocol Restrictions
2.2 External Domain Allowlist
2.3 Private/Internal IP Blocking
2.4 DNS Rebinding Protection
2.5 Socket-Level IP Validation
2.6 Port Restrictions
2.7 Response Size Limit
2.8 Redirect Blocking
3. Customer Action Required
1. Provide Approved Whitelisted Domains
3. Update Older or Unsupported URLs
4. Firewall Considerations
Last updated
Was this helpful?
