{"id":"CVE-2026-85662","summary":"Marqo 2.26.0 Server-Side Request Forgery via Media URLs","details":"Marqo 2.26.0 contains a server-side request forgery vulnerability in the add_documents endpoint that allows unauthenticated attackers to trigger requests to arbitrary URLs by supplying malicious media field values. Attackers can exploit download_image_from_url and fetch_content_sample functions which lack destination filtering and host validation to access internal services and cloud metadata endpoints.","modified":"2026-09-06T03:47:19.689254938Z","published":"2026-09-04T14:32:19.509Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/85xxx/CVE-2026-85662.json","cna_assigner":"VulnCheck","cwe_ids":["CWE-918"]},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/85xxx/CVE-2026-85662.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-85662"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/marqo-2.26.0-server-side-request-forgery-via-media-urls"},{"type":"REPORT","url":"https://github.com/marqo-ai/marqo/issues/1452"},{"type":"PACKAGE","url":"https://github.com/marqo-ai/marqo"},{"type":"ARTICLE","url":"https://github.com/marqo-ai/marqo/blob/2.26.0/components/inference_orchestrator/src/inference_orchestrator/services/media_download_and_preprocess/image_download.py"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/marqo-ai/marqo","events":[{"introduced":"0"},{"last_affected":"4250358bb51fa2d862308a2f3c893e5afbb71106"}],"database_specific":{"extracted_events":[{"introduced":"0"},{"last_affected":"2.26.0"}],"source":"AFFECTED_FIELD"}}],"versions":["2.26.0","2.25.0","2.24.0","2.23.0","2.22.0","2.21.0","2.20.0","2.19.0","2.17.1","2.17.0","2.16.0","2.15.0","2.14.0","2.13.1","2.13.0","2.12.0","2.12.1","2.11.3","2.11.2","2.11.0","2.10.1","2.11.1","1.4.0","2.10.0","2.8.2","2.9.0","2.8.1","2.8.0","2.7.2","2.7.1","2.7.0","2.6.0","2.5.1","2.5.0","2.4.3","2.4.0","2.2.1","2.3.0","2.2.0","2.1.0","2.0.0","1.5.1","1.5.0","1.3.0","1.2.0","1.1.0","1.0.0","0.1.0","0.0.21","0.0.20","0.0.19","0.0.18","0.0.17","0.0.16","0.0.15","0.0.14","0.0.13","0.0.12","0.0.11","0.0.10","0.0.9","0.0.8","0.0.7","0.0.5","0.0.4"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-85662.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N"}]}