CVE-2019-16932: SSRF
Published Sep 30, 2019
·Updated
A blind SSRF vulnerability exists in the Visualizer plugin before 3.3.1 for WordPress via wp-json/visualizer/v1/upload-data.
Affected Software
1 affected component
Themeisle Visualizer Wordpress<3.3.1
Event History
Sep 30, 2019
CVE Published
via MITRE·03:08 PM
Data Sourced
via MITRE·03:08 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-16932.
2
What is the severity of CVE-2019-16932?
The severity of CVE-2019-16932 is critical.
3
What is the affected software of CVE-2019-16932?
The affected software of CVE-2019-16932 is the Visualizer plugin before version 3.3.1 for WordPress.
4
What is the description of CVE-2019-16932?
CVE-2019-16932 is a blind SSRF vulnerability in the Visualizer plugin before 3.3.1 for WordPress via wp-json/visualizer/v1/upload-data.
5
Are there any references for CVE-2019-16932?
Yes, you can find references for CVE-2019-16932 at the following links: [link 1](https://nathandavison.com/blog/wordpress-visualizer-plugin-xss-and-ssrf), [link 2](https://wordpress.org/plugins/visualizer/#developers), [link 3](https://wpvulndb.com/vulnerabilities/9892)