CVE-2024-4469
PoC —CVSS 3.1
7.5 high
EPSS
<1%p47
Published
()
Modified
Description
The WP STAGING WordPress Backup Plugin WordPress plugin before 3.5.0 does not prevent users with the administrator role from pinging conducting SSRF attacks, which may be a problem in multisite configurations.
- Vendors
- wp-staging
- Products
- wp staging
- Ecosystems
- WordPress
- Weakness
- CWE-918
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.