Description A vulnerability exists in phpBB <v3.2.10 and <v3.3.1 which allowed remote image dimensions check to be used to SSRF. Remediation References CVE-2020-8226 Related Vulnerabilities WordPress Plugin Pondol Form to Mail Cross-Site Scripting (1.1) WordPress Plugin WP-RecentComments 'page' Parameter Cross-Site Scripting (2.0.6) WordPress Plugin Ad Inserter-Ad Manager & AdSense Ads Directory Traversal (2.4.19) WordPress Plugin Shortlinks by Pretty Links-Best WordPress Link Tracking Multiple Cross-Site Scripting and SQL Injection Vulnerabilities (1.5.2) SugarCRM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-28956) Severity Medium Classification CVE-2020-8226 CWE-918 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N Tags Missing Update Known Vulnerabilities