취약점  ·  2026-06-24

Crawl4AI SSRF를 통한 IPv6 매핑 IPv4 블록리스트 우회 (LLM 스크래핑 엔드포인트)

취약점High 영향도GlobalCVE-2026-56266
0.8.7 이전의 Crawl4AI
The /llm endpoint is specifically designed to produce LLM-ready output — meaning attackers can force Crawl4AI to scrape internal cloud metadata, IMDS credentials, and internal AI services, with the results returned in clean LLM-formatted output. The Docker API is unauthenticated by default, making this a zero-auth SSRF against AI data pipelines.
Unauthenticated POST to /crawl, /crawl/stream, /md, or /llm with IPv6-mapped IPv4 address (::ffff:169.254.169.254) bypassing the blocklist and reaching cloud metadata or internal services
Crawl4AI < 0.8.7
Upgrade to Crawl4AI 0.8.7. Source: https://github.com/unclecode/crawl4ai
출처
NVD CVE-2026-56266Crawl4AI GitHub
라이브 피드에서 보기 AI 보안 및 거버넌스 관련 소식을 더 살펴보세요 — 매일 아침 업데이트.
피드 열기 →