CVE-2021-31779: SSRF
Published Apr 28, 2021
·Updated
The yoastseo (aka Yoast SEO) extension before 7.2.1 for TYPO3 allows SSRF via a backend user account.
Affected Software
1 affected component
Yoast Yoast Seo Typo3<7.2.1
Remediation
Patch Available
Event History
Apr 28, 2021
CVE Published
via MITRE·06:23 AM
Data Sourced
via MITRE·06:23 AM
Description
Frequently Asked Questions
1
What is CVE-2021-31779?
CVE-2021-31779 is a vulnerability in the yoast_seo extension before 7.2.1 for TYPO3 that allows SSRF via a backend user account.
2
What is the severity of CVE-2021-31779?
The severity of CVE-2021-31779 is medium with a CVSS score of 6.4.
3
How does CVE-2021-31779 affect TYPO3?
CVE-2021-31779 affects TYPO3 if the yoast_seo extension before 7.2.1 is installed.
4
What is SSRF?
Server-Side Request Forgery (SSRF) is a vulnerability that allows an attacker to make requests to internal resources accessible from the server.
5
How can I fix CVE-2021-31779?
To fix CVE-2021-31779, update the yoast_seo extension to version 7.2.1 or newer.