From SSRF to Data Exfiltration in Ollama
CVE-2026-5530
SSRF in Ollama’s OCI registry redirect handling. A malicious registry can redirect blob downloads to internal endpoints, bypass hash verification, and exfiltrate full responses via the push API....