CVE-2022-2912
16.09.2022, 09:15
The Craw Data WordPress plugin through 1.0.0 does not implement nonce checks, which could allow attackers to make a logged in admin change the url value performing unwanted crawls on third-party sites (SSRF).
Vendor | Product | Version |
---|---|---|
craw-data_project | craw-data | 𝑥 ≤ 1.0.0 |
𝑥
= Vulnerable software versions