← Vulnerability feed

Vulnerability record · CVE-2021-36761 · published 21 June 2022

CVE-2021-36761: Qlik sense server-side request forgery (ssrf) vulnerability

Qlik · Qlik Sense

The GeoAnalytics feature in Qlik Sense April 2020 patch 4 allows SSRF.

5.3 CVSS 3.1 Medium EPSS 1.2% · top 33.3% CWE-918 · Server-side request forgery (SSRF)
5.3CVSS 3.1 base score, v2 5.0
1.2%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

The GeoAnalytics feature in Qlik Sense April 2020 patch 4 allows SSRF.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://www.cyberiskvision.com/advisory/ Third Party Advisory
https://www.cyberiskvision.com/advisory/ Third Party Advisory

Track CVE-2021-36761 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.9CVE-2023-48365Qlik Sense Enterprise HTTP Request Smuggling Enables Unauthenticated RCEQlik Sense Enterprise for Windows before August 2023 Patch 2 fails to properly validate HTTP headers, allowing HTTP request tunneling to the backend …KEVEPSS 47%analysed9.9CVE-2023-41265Qlik Sense Enterprise HTTP request tunneling privilege escalationQlik Sense Enterprise for Windows fails to properly handle raw HTTP requests, allowing request tunneling that reaches the backend repository applicat…KEVEPSS 88%analysed6.5CVE-2023-41266Qlik Sense Enterprise path traversal enables anonymous sessionsQlik Sense Enterprise for Windows contains a path traversal flaw (CWE-22) in multiple releases up to the listed patch levels. An unauthenticated remo…KEVEPSS 85%analysed7.5CVE-2025-61138Qlik sense vulnerabilityQlik Sense Enterprise v14.212.13 was discovered to contain an information leak via the /dev-hub/ directory.EPSS 0.29%6.5CVE-2019-11628Qlikview server expression language injection vulnerabilityAn issue was discovered in QlikView Server before 11.20 SR19, 12.00 and 12.10 before 12.10 SR11, 12.20 before SR9, and 12.30 before SR2; and Qlik Sen…EPSS 0.97%5.3CVE-2022-0564Qlik sense observable discrepancy vulnerabilityA vulnerability in Qlik Sense Enterprise on Windows could allow an remote attacker to enumerate domain user accounts. An attacker could exploit this …EPSS 1.4%10.0CVE-2026-83548SonicWall SMA1000 pre-auth SSRF via alternate access pathThe SMA1000 Appliance Work Place interface exposes an unintended alternate access path that allows server-side request forgery before authentication.…KEVEPSS 8.8%analysed10.0CVE-2026-49869Kestra OSS auth bypass via path suffix match enables RCEKestra OSS AuthenticationFilter whitelists the public config endpoint using request.getPath().endsWith("/configs"), a suffix match instead of an exac…KEVEPSS 2.1%analysed

Source: NIST National Vulnerability Database (record CVE-2021-36761), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.