CVE-2023-31219: WordPress Download Monitor Plugin <= 4.8.1 is vulnerable to Server Side Request Forgery (SSRF)
Server-Side Request Forgery (SSRF) vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.8.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-31219?
CVE-2023-31219 is a vulnerability found in the WordPress Download Monitor Plugin version 4.8.1 and below, which allows Server Side Request Forgery (SSRF).
How severe is CVE-2023-31219?
CVE-2023-31219 has a severity rating of 4.1, which is considered medium.
How does CVE-2023-31219 affect Download Monitor?
CVE-2023-31219 affects Download Monitor versions from n/a through 4.8.1 by enabling Server Side Request Forgery (SSRF) attacks.
What is Server Side Request Forgery (SSRF)?
Server Side Request Forgery (SSRF) is a vulnerability that allows an attacker to make unauthorized requests from a vulnerable server to internal resources or external systems.
Is there a fix for CVE-2023-31219?
Yes, to fix CVE-2023-31219, it is recommended to update the WordPress Download Monitor Plugin to a version above 4.8.1.