Server Side Request Forgery (SSRF) vulnerability affecting multiple WordPress plugins
CVE-2022-40700
Key Information:
- Vendor
Wordpress
- Status
- Vendor
- CVE Published:
- 19 January 2024
What is CVE-2022-40700?
A Server-Side Request Forgery (SSRF) vulnerability exists in multiple WordPress and WooCommerce plugins, enabling attackers to send unauthorized requests from the server to internal or external services. This could be exploited to access sensitive information or services that are otherwise protected. The vulnerability impacts various popular plugins, causing potential risks if left unaddressed. Users of affected plugins are urged to update to the latest versions and follow security best practices to mitigate these vulnerabilities.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Admin CSS MU <= 2.6
AMP Toolbox <= 2.1.1
ArcStone <= 4.6.6
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved