A high-severity server-side request forgery flaw tracked as CVE-2026-45568 was disclosed in openziti zrok affecting versions 0.4.47 through before 2.0.3. The issue resides in the Python SDK's ProxyShare Flask proxy route, which accepted absolute URLs in the request path and passed them to URL-joining logic, allowing an attacker to override the intended target host and make the server fetch and return responses from attacker-chosen destinations. The vulnerability can be exploited over the network without privileges or user interaction and carries high confidentiality and integrity impact.
openziti addressed the flaw in zrok 2.0.3 by changing the proxy to reject absolute URL paths before forwarding requests. The fix adds target URL validation, returns HTTP 400 for invalid proxy paths, and includes tests covering direct and encoded absolute-URL rejection while preserving normal forwarding of relative paths. The associated patch notes say the change prevents viewers from coercing the proxy into requesting arbitrary internal or loopback services instead of the configured upstream target.

See affected versions and whether adversaries are exploiting it.
2 events from the most recent confirmed update back to the earliest known activity.
CVE-2026-45568 was published as a vulnerability affecting openziti zrok versions 0.4.47 through before 2.0.3, describing how the Python SDK ProxyShare route could be abused as an SSRF proxy via absolute URL paths. The advisory states the issue was fixed in zrok version 2.0.3 and that the GitHub advisory, release, and commit references were published on July 16, 2026.
A GitHub commit in the openziti zrok project changed the Python SDK ProxyShare logic to reject absolute URL paths, preventing proxying to attacker-chosen internal or loopback services. The patch added target URL validation, returned HTTP 400 for invalid proxy paths, and introduced tests for absolute-path rejection and normal relative-path forwarding.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
cvefeed.io
Open sourcegithub.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.