Description
WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability because URL validation does not consider the interpretation of a name as a series of hex characters.
Remediation
References
Related Vulnerabilities
WordPress Plugin Facebook Opengraph Meta 'all_meta.php' SQL Injection (1.0)
Oracle Database Server CVE-2011-0882 Vulnerability (CVE-2011-0882)
WordPress Plugin WP to Twitter Security Bypass (3.2.19)
WordPress Plugin WP-Stats-Dashboard SQL Injection (2.9.4)
PostgreSQL Untrusted Search Path Vulnerability (CVE-2020-14350)