
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-33182 is a Server-Side Request Forgery (SSRF) and credential leakage vulnerability in the Saloon PHP HTTP client library (saloonphp/saloon). When building a request URL, Saloon's URLHelper::join() would use an absolute URL supplied as the endpoint as-is, completely ignoring the connector's configured base URL — along with any authentication headers, cookies, or tokens — and forwarding the request to the attacker-controlled host. All versions of the Composer package saloonphp/saloon prior to 4.0.0 are affected. The vulnerability was published on March 25, 2026, with a CVSS v3.1 base score of 7.5 (High) and a CVSS v4.0 base score of 6.6 (Medium) (Github Advisory, Saloon Advisory).
The root cause is improper URL construction logic in URLHelper::join(), classified under CWE-918 (Server-Side Request Forgery) and CWE-522 (Insufficiently Protected Credentials). When a request's resolveEndpoint() method returns a fully qualified absolute URL, Saloon's URL builder treats it as the final destination rather than appending it to the connector's base URL, effectively bypassing all base URL restrictions. This is exploitable when user-supplied or externally influenced data (e.g., redirect_uri, callback URLs, or configuration values) is passed into resolveEndpoint() without validation. The fix in v4.0.0 causes URLHelper::join() to throw an InvalidArgumentException when the endpoint is an absolute URL, unless the connector or request explicitly opts in to this behavior (Github Advisory, Saloon Advisory).
Successful exploitation allows an attacker to redirect server-side HTTP requests — including all attached authentication headers, API tokens, cookies, and OAuth credentials — to an attacker-controlled host, resulting in credential theft and unauthorized data exposure. The confidentiality impact is rated High, as sensitive authentication material can be exfiltrated without any integrity or availability impact to the vulnerable system itself. Applications that pass user-controlled values (such as OAuth redirect_uri or webhook callback URLs) into Saloon request endpoints are most at risk, and stolen credentials could enable further lateral movement into downstream APIs or services (Github Advisory).
No public proof-of-concept exploit code or in-the-wild exploitation has been reported for CVE-2026-33182. The EPSS score is approximately 0.026–0.032%, placing it in the lower percentiles for near-term exploitation likelihood. The vulnerability is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog. Exploitation requires that user-controlled or externally influenced input reaches the resolveEndpoint() method of a Saloon request, which is an application-level precondition rather than a universally exploitable condition (Github Advisory, Saloon Advisory).
saloonphp/saloon < 4.0.0 that passes user-supplied or externally influenced data (e.g., redirect_uri, callback URL, webhook URL) into a Saloon request's resolveEndpoint() method.ngrok, requestbin, or a VPS) capable of logging incoming HTTP requests and headers.https://attacker.example.com/capture.redirect_uri or callback URL parameter in the application's API or configuration).URLHelper::join() will use the absolute URL as-is, ignoring the connector's base URL.Authorization, Cookie, or custom API token headers.URLHelper::join() or InvalidArgumentException (post-patch, indicating attempted exploitation).The primary remediation is to upgrade saloonphp/saloon to version 4.0.0 or later, which rejects absolute URLs in the endpoint by default and requires explicit opt-in on a per-connector or per-request basis (Github Advisory). The upgrade guide is available at https://docs.saloon.dev/upgrade/upgrading-from-v3-to-v4. As a workaround for applications that cannot immediately upgrade, developers should validate and sanitize all user-supplied input before passing it to resolveEndpoint(), explicitly rejecting any values that are valid absolute URLs. Additionally, review all Saloon connectors and requests that accept external or user-controlled endpoint values and apply allowlist-based URL validation.
The vulnerability was discovered by researcher @HuajiHD, who also recommended solutions, with the fix applied by @JonPurvis and verified by Saloon maintainer @Sammyjo20. The advisory was published directly by the Saloon project on GitHub on March 25, 2026. No significant broader media coverage or notable community controversy has been identified beyond the standard advisory distribution (Saloon Advisory).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."