I would like to report a Blind SSRF vulnerability on cz.acronis.com.
Affected Url: https://cz.acronis.com/wp-admin/admin-ajax.php
Parameter vulnerable: address and company
POC:
POST Request, payload in address body parameter:
https://hackerone.com/reports/1086206