The WPB Show Core WordPress plugin through 2.2 is vulnerable to server-side request forgery (SSRF) via the `path` parameter.
                
            References
                    | Link | Resource | 
|---|---|
| https://wpscan.com/vulnerability/c0136057-f420-4fe7-a147-ecbec7e7a9b5 | Exploit Third Party Advisory | 
| https://wpscan.com/vulnerability/c0136057-f420-4fe7-a147-ecbec7e7a9b5 | Exploit Third Party Advisory | 
Configurations
                    History
                    No history.
Information
                Published : 2023-11-27 17:15
Updated : 2024-11-21 08:42
NVD link : CVE-2023-5974
Mitre link : CVE-2023-5974
CVE.ORG link : CVE-2023-5974
JSON object : View
Products Affected
                wpb_show_core_project
- wpb_show_core
 
CWE
                
                    
                        
                        CWE-918
                        
            Server-Side Request Forgery (SSRF)
