CVE-2024-33629: WordPress Auto Featured Image (Auto Post Thumbnail) plugin <= 4.0.0 - Server Side Request Forgery (SSRF) vulnerability
Published Apr 29, 2024
·Updated
Server-Side Request Forgery (SSRF) vulnerability in Creative Motion Auto Featured Image (Auto Post Thumbnail).This issue affects Auto Featured Image (Auto Post Thumbnail): from n/a through 4.0.0.
Affected Software
1 affected component
Creative Motion Auto Featured Image (Auto Post Thumbnail)<=4.0.0
Event History
Apr 29, 2024
CVE Published
via MITRE·07:43 AM
Data Sourced
via MITRE·07:43 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-33629?
CVE-2024-33629 is classified as a medium severity Server-Side Request Forgery (SSRF) vulnerability.
2
How do I fix CVE-2024-33629?
To fix CVE-2024-33629, update the Creative Motion Auto Featured Image (Auto Post Thumbnail) plugin to the latest version beyond 4.0.0.
3
What versions are affected by CVE-2024-33629?
CVE-2024-33629 affects all versions of Creative Motion Auto Featured Image (Auto Post Thumbnail) up to and including 4.0.0.
4
What type of vulnerability is CVE-2024-33629?
CVE-2024-33629 is identified as a Server-Side Request Forgery (SSRF) vulnerability.
5
Who is the vendor of the affected software in CVE-2024-33629?
The vendor of the affected software in CVE-2024-33629 is Creative Motion.