PT-2026-65314 · WordPress · Simple Link Directory

CVE-2026-61953

·

Published

2026-07-27

·

Updated

2026-07-28

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Simple Link Directory Pro versions prior to 15.0.7
Description An unauthenticated Server Side Request Forgery (SSRF) exists in the plugin. SSRF is a flaw that allows an attacker to induce the server-side application to make requests to an unintended location, potentially accessing internal resources or bypassing firewalls.
Recommendations Update Simple Link Directory Pro to version 15.0.7 or later.

Fix

SSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-61953

Affected Products

Simple Link Directory