SSRF

cat ssrf.log

From SSRF to Data Exfiltration in Ollama

CVE-2026-5530

SSRF in Ollama’s OCI registry redirect handling. A malicious registry can redirect blob downloads to internal endpoints, bypass hash verification, and exfiltrate full responses via the push API....

April 9, 2026 · 7 min · David Rochester

SSRF and Token Theft in Docker Model Runner

CVE-2026-33990

SSRF in Docker Model Runner’s OCI authentication flow. A malicious registry can redirect the token exchange to scan internal networks and exfiltrate tokens during a model pull....

March 29, 2026 · 8 min · David Rochester