ZeroHour

CVE-2017-9066

CVSS 3.0
8.6 high
EPSS
4%p89
Published
()
Modified
Description

In WordPress before 4.7.5, there is insufficient redirect validation in the HTTP class, leading to SSRF.

Vendors
wordpressdebian
Products
wordpress, debian linux
Ecosystems
WordPress
Weakness
CWE-918
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N

In the news