CVE-2024-32718: WordPress The Pack Elementor addons plugin <= 2.0.8.2 - Server Side Request Forgery (SSRF) vulnerability
Published Apr 24, 2024
·Updated
Server-Side Request Forgery (SSRF) vulnerability in Webangon The Pack Elementor.This issue affects The Pack Elementor addons: from n/a through 2.0.8.2.
Affected Software
3 affected components
webangon The Pack Elementor Addons Wordpress<2.0.8.3
webangon The Pack Elementor<=2.0.8.2
WordPress The Pack Elementor addons<=2.0.8.2
Remediation
Information
Update to 2.0.8.3 or a higher version.
Event History
Apr 24, 2024
CVE Published
via MITRE·07:19 AM
Data Sourced
via MITRE·07:19 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-32718?
CVE-2024-32718 is classified as a Server-Side Request Forgery (SSRF) vulnerability, which can lead to sensitive data exposure.
2
How do I fix CVE-2024-32718?
To mitigate CVE-2024-32718, update The Pack Elementor addons to version 2.0.8.3 or later.
3
What versions of The Pack Elementor addons are affected by CVE-2024-32718?
CVE-2024-32718 affects The Pack Elementor addons version 2.0.8.2 and earlier.
4
Can CVE-2024-32718 affect my WordPress site?
Yes, if you are using The Pack Elementor addons version 2.0.8.2 or earlier on your WordPress site, it is vulnerable to CVE-2024-32718.
5
What is Server-Side Request Forgery in CVE-2024-32718?
Server-Side Request Forgery (SSRF) in CVE-2024-32718 allows an attacker to send crafted requests from the server, potentially leading to information leakage.