PT-2026-99253 · WordPress · Testimonials Widget
CVSS v3.1
5.8
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Testimonials Widget WordPress plugin versions prior to 4.0.5
Description
The plugin fails to validate a user-supplied URL before fetching it server-side and storing the response as a public file. This allows unauthenticated users to perform a Server-Side Request Forgery (SSRF), where the server is forced to make requests to internal services and expose the responses.
Recommendations
Update the Testimonials Widget WordPress plugin to version 4.0.5 or later.
Exploit
Fix
SSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Testimonials Widget