Kyuubi Engine UI proxy accepts a host and port from the request path and proxies HTTP requests to that destination. A remote requester with network access to the proxy can cause the Kyuubi server to send HTTP requests to arbitrary reachable hosts, resulting in SSRF or open-proxy behavior. This issue affects Apache Kyuubi: from 1.8.0 before 1.12.0. Users are recommended to upgrade to version 1.12.0, which disables the proxy by default. To restore proxied Engine UI, set kyuubi.frontend.rest.engine.ui.proxy.enabled=true and configure allowed target hosts with kyuubi.frontend.rest.engine.ui.proxy.hosts.
Casky was already ahead
This CVE exploits attack patterns that Casky's 0matched skills already investigate — long before this vulnerability was disclosed. Claude's reasoning model maps these techniques to MITRE ATT&CK, so practitioners who ran these skills have already seen the threat behaviour in their findings.
Apache Kyuubi's REST API proxy component contains a Server-Side Request Forgery (SSRF) vulnerability that allows remote attackers to hijack the proxy functionality and force the Kyuubi server to send HTTP requests to arbitrary hosts on the network. By manipulating the host and port parameters in request paths, an unauthenticated attacker with network access can weaponize the server as an open proxy, potentially exfiltrating data, attacking internal systems, or pivoting deeper into network infrastructure. This vulnerability affects Kyuubi versions 1.8.0 through 1.11.x, impacting organizations running vulnerable deployments in production environments. The vulnerability is particularly dangerous because it requires no authentication and can operate at network speed, making it ideal for rapid reconnaissance and lateral movement attacks.
While this CVE does not map to specific MITRE ATT&CK techniques in the current threat model, Casky's Claude-powered analysis would detect attack patterns consistent with T1021 (Remote Service Session Initiation) and T1090 (Proxy) by identifying suspicious HTTP request chains originating from the Kyuubi service to unexpected internal or external destinations. Practitioners using Casky would observe detection findings highlighting anomalous outbound proxy traffic, unusual host/port combinations in request logs, and patterns of reconnaissance scanning behavior—all indicators of SSRF exploitation attempts. Casky's extended reasoning capabilities would correlate these suspicious request patterns with the known vulnerability surface, enabling security teams to differentiate legitimate proxy traffic from exploitation attempts and prioritize remediation before attackers establish persistent access pathways.
Composite risk scoring from EPSS, CISA KEV, Shodan, and GreyNoise — 21 security APIs correlated into a single Casky Risk Score. Coming in Casky Pro. Join early access →
Casky has 0 skills that investigate the attack patterns behind CVE-2026-23904. Run one and get CVSS-scored findings in 3 minutes.
Run the skill that detects this →© 2026 Casky.AI, Inc. · AI Security Investigation