Server-Side Request Forgery (SSRF) in Janus WebRTC Server - #VU151864
Published: September 23, 2026
Vulnerability details
The vulnerability allows a remote attacker to send arbitrary commands to internal services.
The vulnerability exists due to improper URL protocol restriction in the Streaming plugin's RTSP mountpoint URL handling when processing API-supplied URLs. A remote attacker can supply a gopher URL through the plugin signaling API to send arbitrary commands to internal services.
Requests made through this vector are blind.