Server-Side Request Forgery Vulnerability in KaizenCoders URL Shortify Plugin
CVE-2026-25385
5.5MEDIUM
What is CVE-2026-25385?
The URL Shortify plugin by KaizenCoders is susceptible to a Server-Side Request Forgery (SSRF) vulnerability that allows attackers to send crafted requests to internal services. This can lead to unauthorized access or manipulation of sensitive resources within the local network, posing a significant security risk. Users of versions up to and including 1.12.3 should take immediate action to mitigate this issue to protect their systems and sensitive data.
Affected Version(s)
URL Shortify 0 <= 1.12.3