First published: Tue Jan 07 2025(Updated: )
Server-Side Request Forgery (SSRF) vulnerability in Tips and Tricks HQ Compact WP Audio Player allows Server Side Request Forgery.This issue affects Compact WP Audio Player: from n/a through 1.9.14.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Compact WP Audio Player | <=1.9.14 | |
Compact WP Audio Player | <=1.9.14 |
Update the WordPress Compact WP Audio Player wordpress plugin to the latest available version (at least 1.9.15).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-56279 has been categorized as a moderate severity Server-Side Request Forgery (SSRF) vulnerability.
To fix CVE-2024-56279, update the Compact WP Audio Player plugin to a version above 1.9.14.
CVE-2024-56279 affects the Compact WP Audio Player plugin versions up to and including 1.9.14.
Yes, CVE-2024-56279 can potentially allow attackers to perform unauthorized actions on the server via SSRF.
No, CVE-2024-56279 is not present in versions of the Compact WP Audio Player released after 1.9.14.