WordPress Plugin Web Stories Server-Side Request Forgery - CVE-2022-3708 - Vulnerability Database

WordPress Plugin Web Stories Server-Side Request Forgery - CVE-2022-3708

Critical
Reference: CVE-2022-3708
Title: WordPress Plugin Web Stories Server-Side Request Forgery
Overview:

WordPress Plugin Web Stories is prone to a server-side request forgery vulnerability. An attacker may leverage this issue to make the vulnerable server perform port scanning of hosts in internal or external networks other attacks are also possible. WordPress Plugin Web Stories version 1.24.0 is vulnerable prior versions may also be affected.