← Back to feed
Vulnerabilities & PatchesEmerging1 sourceJul 29, 2026 · 15:18via CERT/CC Vulnerability Notes

VU#305509: OPeNDAP Hyrax is vulnerable to SSRF and Credential Disclosure

Brief

Overview

A vulnerability has been discovered in the OPeNDAP Hyrax software solution. A remote attacker with the ability to submit crafted requests to an affected Hyrax instance could cause the application to communicate with unauthorized remote systems. Under certain conditions, the vulnerability may also result in the unintended disclosure of user authentication tokens to unauthorized destinations.

Description

CVE-2026-16637

OPeNDAP Hyrax is vulnerable to Server Side Request Forgery (SSRF) and credential disclosure via unvalidated HTTP redirects that bypass the AllowedHosts allowlist and leak Earthdata headers (User-Id, Echo-Token) to attacker-controlled endpoints.

OPeNDAP Hyrax is an open-source data server software that enables remote access to scientific datasets over the internet using the OPeNDAP protocol.

Read more on CERT/CC Vulnerability Notes