Description
WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability because Windows paths are mishandled during certain validation of relative URLs.
Remediation
References
Related Vulnerabilities
Oracle HTTP Server CVE-2023-22019 Vulnerability (CVE-2023-22019)
WordPress Plugin Contact Form Widget-Contact Query, Form Maker SQL Injection (1.0.9)
WordPress Plugin BuddyPress Customer.io Analytics Integration Cross-Site Request Forgery (1.1.6)
WordPress Plugin Donation Block For PayPal Cross-Site Scripting (2.0.0)