CVE-2022-2367

Publication date

2022-08-08 13:47:24

Family

WPScan

State

PUBLISHED

Description

The WSM Downloader WordPress plugin through 1.4.0 allows only specific popular websites to download images/files from, this can be bypassed due to the lack of good "link" parameter validation