// Level 4 · Control detail
A10:2021HighOWASP Web · Top 10 (2021)

Server-Side Request Forgery (SSRF)

Application fetches a remote resource without validating the user-supplied URL. CWE-918.

Get AI-powered control detail

Plain-English explanation, CLI checks, portal steps, remediation, automation snippets, and cross-framework mappings.

3/3 free lookups remaining today

Related controls in other frameworks

finding related controls…