PyPI: crawl4ai

CVE-2026-53754

Safety vulnerability ID: SFTY-20260616-66519

Affected versions of the Crawl4AI package are vulnerable to Server-Side Request Forgery (SSRF) due to an incomplete IPv4/IPv6 CIDR blocklist. The `validate_webhook_url` and `validate_url_destination` functions in `deploy/docker/utils.py` fail to account for several IPv6 transition forms, allowing internal IP addresses to bypass the blocklist. An unauthenticated attacker can exploit this vulnerability by encoding internal IPv4 addresses within IPv6 transition forms to access internal services and cloud metadata endpoints, potentially exposing sensitive information.

Created at: Jun 29, 2026Updated at: Jun 29, 2026

Overview

Crawl4AI: SSRF filter bypass in Docker server via IPv6 transition forms (NAT64 / 6to4 / unspecified / v4-mapped)

Advisory

Crawl4AI – Server-Side Request Forgery (SSRF)

Affected Package

Affecting crawl4ai package, versions
<= 0.8.7

Also affects

---

How to Fix

Upgrade
crawl4ai
to
0.8.8
or higher.

Mitigation and Workarounds

---

Vulnerable Functions

Functions linked to known vulnerabilities.

Vulnerable function data is available for Enterprise customers

Book a call with us to see Safety in action.

Safety

Verified by Safety

Our Cybersecurity Intelligence Team reviewed this vulnerability. We combine public data with our own research to find issues not yet reported to public sources.

Learn more