Rembg is a tool to remove images background. In Rembg 2.0.57 and earlier, the /api/remove endpoint takes a URL query parameter that allows an image to be fetched, processed and returned. An attacker may be able to query this endpoint to view pictures hosted on the internal network of the rembg server. This issue may lead to Information Disclosure.
History

Tue, 04 Mar 2025 03:45:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 03 Mar 2025 16:45:00 +0000

Type Values Removed Values Added
Description Rembg is a tool to remove images background. In Rembg 2.0.57 and earlier, the /api/remove endpoint takes a URL query parameter that allows an image to be fetched, processed and returned. An attacker may be able to query this endpoint to view pictures hosted on the internal network of the rembg server. This issue may lead to Information Disclosure.
Title Rembg allows SSRF via /api/remove
Weaknesses CWE-918
References
Metrics cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:L/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2025-03-03T16:36:09.633Z

Updated: 2025-03-03T18:27:16.511Z

Reserved: 2025-02-06T17:13:33.123Z

Link: CVE-2025-25301

cve-icon Vulnrichment

Updated: 2025-03-03T18:18:42.477Z

cve-icon NVD

Status : Received

Published: 2025-03-03T17:15:14.740

Modified: 2025-03-03T17:15:14.740

Link: CVE-2025-25301

cve-icon Redhat

No data.