VYPR
Unrated severityNVD Advisory· Published Jul 30, 2024· Updated Aug 2, 2024

CVE-2024-41305

CVE-2024-41305

Description

A Server-Side Request Forgery (SSRF) in the Plugins Page of WonderCMS v3.4.3 allows attackers to force the application to make arbitrary requests via injection of crafted URLs into the pluginThemeUrl parameter.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.