VYPR

Nimble Portfolio

by WordPress

CVEs (1)

  • CVE-2024-5021CriJun 19, 2024
    risk 0.61cvss 9.3epss 0.01

    The WordPress Picture / Portfolio / Media Gallery plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.0.1 via the 'file_get_contents' function. This makes it possible for unauthenticated attackers to make web requests to…