CVE-2026-39087

EUVD-2026-25232
ntfy before 2.22.0 allows SSRF because of an unanchored regular expression for web push endpoint URLs.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.4 MEDIUM
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N