Description
WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability because URL validation does not consider the interpretation of a name as a series of hex characters.
Remediation
References
Related Vulnerabilities
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7857)
SharePoint Improper Privilege Management Vulnerability (CVE-2021-1712)
Squid Improper Input Validation Vulnerability (CVE-2015-3455)
PHP Other Vulnerability (CVE-2002-0229)
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-4220)