Vulnerabilities > CVE-2022-41609 - Server-Side Request Forgery (SSRF) vulnerability in Wordplus Better Messages
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
Auth. (subscriber+) Server-Side Request Forgery (SSRF) vulnerability in Better Messages plugin 1.9.10.68 on WordPress.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
References
- https://patchstack.com/database/vulnerability/bp-better-messages/wordpress-better-messages-plugin-1-9-10-68-server-side-request-forgery-ssrf-vulnerability?_s_id=cve
- https://patchstack.com/database/vulnerability/bp-better-messages/wordpress-better-messages-plugin-1-9-10-68-server-side-request-forgery-ssrf-vulnerability?_s_id=cve
- https://wordpress.org/plugins/bp-better-messages/#developers
- https://wordpress.org/plugins/bp-better-messages/#developers