Feehi CMS 2.1.1 is affected by a Server-side request forgery (SSRF) vulnerability. When the user modifies the HTTP Referer header to any url, the server can make a request to it.
- https://github.com/liufee/cms/issues/57
No PoCs found on GitHub currently.