[WordPress Wpopal Core Features Plugin](versions 1.5.7 and older) Vulnerability to Server-Side Request Forgery (SSRF)
Importance (CVSS3.0)
★★★★★★★★☆☆ 8.2 / 10 - High
Details
A Server-Side Request Forgery (SSRF) vulnerability was discovered in WordPress Wpopal Core Features Plugin.
This vulnerability may allow malicious attackers to execute a website request to their arbitrary domain.
This vulnerability has not been fixed yet.
Solutions
There is no patched version avilable.
Source
We provide information about critical vulnerabilities of WordPress for people who are using or are considering using Wordpress for their projects.
“[WordPress Wpopal Core Features Plugin](versions 1.5.7 and older) Vulnerability to Server-Side Request Forgery (SSRF)”, by WS Security is licensed under CC BY 4.0.
Comments