CVE-2026-47170: Garlic-Hub SSRF Vulnerability – Internal Reconnaissance Risk
Garlic-Hub is a self-hosted digital signage management platform that controls networked displays, content libraries, and playback schedules. A vulnerability in versions before 1.1 allows any authenticated user to trick the server into making HTTP requests to internal systems on behalf of the attacker. Those responses are then saved to the publicly accessible media pool, effectively giving an insider a window into your internal network topology and service configuration.
Source data · NVD / CISA · public domain
- CVSS
- 3.1 · 7.7 HIGH · CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
- Weaknesses (CWE)
- CWE-918
- Affected products
- 0 configuration(s)
- Published / Modified
- 2026-06-11 / 2026-06-17
NVD description (verbatim)
Garlic-Hub manages digital signage network — devices, content, and playlists — from a single self-hosted interface. Prior to version 1.1, authenticated users can cause the server to issue arbitrary HTTP requests to internal services via the uploadFromUrl endpoint. This allows internal port scanning, service fingerprinting, and retrieval of internal HTTP responses which are stored in the publicly accessible media pool. This issue has been patched in version 1.1.
2 reference(s) · View on NVD →
SEC.co analysis · AI-assisted, reviewed against source
Technical summary
CVE-2026-47170 is a Server-Side Request Forgery (SSRF) vulnerability in the uploadFromUrl endpoint of Garlic-Hub prior to version 1.1. The endpoint fails to validate or restrict the target URL, allowing authenticated users to force the server to initiate HTTP connections to arbitrary internal addresses and ports. The server's responses are stored in the media pool without access controls, creating an information disclosure channel. The attack requires valid authentication credentials but no elevated privileges, and succeeds over the network with no user interaction.
Business impact
An authenticated user or compromised account can enumerate your internal network, discover and fingerprint internal services (databases, administration panels, APIs), and exfiltrate HTTP responses without triggering traditional network-based alerts. In a hybrid or cloud environment, this may expose internal service meshes, Kubernetes APIs, or metadata endpoints. The public media pool acts as a persistent staging area for exfiltrated data. The impact is primarily reconnaissance and information leakage; no data modification or denial of service occurs, but the recon footprint supports follow-on attacks against discovered internal services.
Affected systems
Garlic-Hub versions prior to 1.1 are vulnerable. The attack surface is limited to authenticated users, so this risk is elevated in environments with weak access controls, shared credentials, or high user counts. Self-hosted deployments with network access to sensitive internal services (databases, admin consoles, cloud metadata endpoints) face the highest exposure.
Exploitability
Exploitation is straightforward once credentials are obtained. An attacker with valid login credentials can directly call the uploadFromUrl endpoint with an internal IP address or hostname and port number, retrieve service banners or API responses, and review the results from the media pool. No complex attack chain, race conditions, or timing is required. The barrier to entry is authentication; if your organization has permissive user provisioning, account sharing, or credential reuse, the practical risk is elevated.
Remediation
Upgrade Garlic-Hub to version 1.1 or later immediately. Verify the upgrade is complete by confirming the installed version in the administrative interface. Simultaneously, audit your Garlic-Hub user roster and revoke credentials for any accounts no longer in active use. If you cannot upgrade immediately, restrict network access to the Garlic-Hub server to a small, trusted IP range or VPN segment, and monitor authentication logs for suspicious login patterns.
Patch guidance
Garlic-Hub version 1.1 contains the fix. Download and deploy it from the official Garlic-Hub repository or vendor site. Test the upgrade in a non-production environment first to verify compatibility with your content playlists and device configurations. No rollback or configuration changes are required post-upgrade, but a full restart of the service is recommended to ensure all components load the patched code.
Detection guidance
Review Garlic-Hub authentication logs for failed or unusual login attempts, particularly from non-standard IP addresses. Monitor the media pool for unexpected files or recent uploads from internal IP addresses or hostnames (e.g., 192.168.*.*, 10.*.*.*, localhost, kubernetes.default, metadata service endpoints). Enable HTTP request logging on internal services if available to spot requests originating from the Garlic-Hub server. Network-side detection is difficult because the traffic is outbound and legitimate; application-level logging is essential.
Why prioritize this
This vulnerability scores 7.7 CVSS (HIGH severity) due to high confidentiality impact and network-accessible attack surface, but is held below critical by the requirement for prior authentication. However, in practice, patch urgently because information disclosure from internal reconnaissance is a critical precursor to lateral movement and data breach. If your Garlic-Hub instance is internet-facing or accessible to a large user population, move this to the top of your queue. If it is air-gapped or restricted to a small trusted team, you have slightly more time, but upgrade within 30 days.
Risk score, explained
CVSS 3.1 score 7.7 reflects a high-impact confidentiality breach (C:H) with no integrity or availability impact (I:N, A:N), accessible over the network without user interaction but requiring prior authentication (AV:N, AC:L, PR:L, UI:N). The score does not account for the downstream risk of reconnaissance enabling lateral movement; treat this as a facilitator vulnerability whose true business risk depends on your internal network architecture and the sensitivity of internal services.
Frequently asked questions
Do I need elevated privileges to exploit this?
No. Any authenticated user with a valid login can exploit it. There is no requirement for administrative or special privileges—a standard user account is sufficient.
Can I see evidence of exploitation in logs?
Yes. Check the media pool for suspicious new files named after internal IP addresses, hostnames, or service paths. Check Garlic-Hub HTTP access logs for uploadFromUrl requests with unusual target parameters. Internal service logs may show unexpected requests originating from the Garlic-Hub server's IP.
What if my Garlic-Hub instance is only accessible internally?
Your risk is lower but not eliminated. An insider, compromised account, or lateral movement attacker on your network can still exploit it to map internal services. Patch as soon as practical, and apply principle of least privilege to Garlic-Hub user accounts.
Is this vulnerability being exploited in the wild?
It is not currently listed on the CISA Known Exploited Vulnerabilities (KEV) catalog, so widespread active exploitation has not been confirmed as of publication. However, the relative simplicity of exploitation means you should assume it could be leveraged quickly once disclosure is wider; prioritize patching accordingly.
This analysis is provided for informational purposes and based on the CVE record and vendor advisory available as of the publication date. Security risks and patch availability may evolve; verify all remediation steps and version numbers against the official Garlic-Hub release notes before deployment. No exploit code is provided; this document is intended to support secure development and vulnerability management workflows, not active exploitation. Organizations must assess their own exposure based on network architecture, user access policies, and sensitivity of internal services. Source: NVD (public-domain), retrieved 2026-07-20. Analysis generated by SEC.co (claude-haiku-4-5).
Weaknesses (CWE)
Related vulnerabilities
- CVE-2026-10068HIGHSSRF in Shibby Tomato 1.28 miniupnpd (Unmaintained)
- CVE-2026-10107HIGHMoviePilot v2 SSRF in Image Proxy Allows Internal Network Access
- CVE-2026-10280HIGHServer-Side Request Forgery in Horizon921 mcpilot 0.1.0
- CVE-2026-10287HIGHSSRF in SourceCodester SEO Meta Tag Extractor 1.0
- CVE-2026-10586HIGHGutenberg Essential Blocks SSRF Vulnerability – High Risk Server-Side Request Forgery
- CVE-2026-10771HIGHCRMEB Java SSRF Vulnerability in QR Code Endpoint
- CVE-2026-11437HIGHServer-Side Request Forgery in go-fastdfs-web 1.3.7 and Earlier
- CVE-2026-20252HIGHSplunk SSRF in Dashboard Studio PDF Export – Full Analysis