VYPR
Medium severity4.7NVD Advisory· Published Jul 30, 2024· Updated Jun 17, 2026

CVE-2024-41305

CVE-2024-41305

Description

A Server-Side Request Forgery (SSRF) in the Plugins Page of WonderCMS v3.4.3 allows attackers to force the application to make arbitrary requests via injection of crafted URLs into the pluginThemeUrl parameter.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.