If you are a WordPress user and your WordPress installation is not up to date, it is important to update it immediately. WordPress 6.2 has been found to be affected by an unauthenticated blind SSRF (Server-Side Request Forgery) vulnerability in the pingback feature. This vulnerability allows attackers to exploit a time-of-check to time-of-use (TOCTOU) race condition between validation checks and HTTP requests. As a result, attackers can gain access to internal hosts that are explicitly forbidden, posing a security risk to your WordPress site. To mitigate this vulnerability and ensure the security of your website, updating WordPress to the latest version is strongly recommended.
WordPress 6.2.1 Maintenance & Security Release
eHostPK Private Limited
0
Post a Comment