First published: Tue Nov 08 2022(Updated: )
Server Side Request Forgery (SSRF) vulnerability in All in One SEO Pro plugin <= 4.2.5.1 on WordPress.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
All In One SEO Pack | <=4.2.5.1 |
Update to 4.2.6 or higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-42494 is a Server Side Request Forgery (SSRF) vulnerability discovered in the All in One SEO Pro plugin for WordPress.
The severity of CVE-2022-42494 is medium (6.5).
CVE-2022-42494 affects All in One SEO Pro plugin version 4.2.5.1 and earlier.
To fix CVE-2022-42494, update your All in One SEO Pro plugin to version 4.2.5.2 or newer.
You can find more information about CVE-2022-42494 in the changelog of the All in One SEO Pro plugin and the Patchstack vulnerability database.