First published: Fri Sep 09 2022(Updated: )
Server-Side Request Forgery (SSRF) vulnerability in Rank Math SEO plugin <= 1.0.95 at WordPress.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Rank Math SEO | <=1.0.95 |
Update to 1.0.95.1 or higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36376 has a critical severity rating due to its potential to execute unauthorized requests on behalf of the server.
To fix CVE-2022-36376, update the Rank Math SEO plugin to version 1.0.96 or later.
CVE-2022-36376 affects WordPress systems using Rank Math SEO plugin versions up to and including 1.0.95.
Yes, CVE-2022-36376 can be exploited remotely, allowing an attacker to make unauthorized requests to internal systems.
The impact of CVE-2022-36376 could lead to data exposure, unauthorized actions, or denial of service on the affected WordPress site.