Skip to content

Kargo Vulnerable to SSRF in Promotion http/http-download Steps Enables Internal Network Access and Data Exfiltration

Moderate severity GitHub Reviewed Published Mar 14, 2026 in akuity/kargo • Updated Mar 20, 2026

No closed alerts for this advisory

Give feedback on Dependabot alerts