Description
WordPress is prone to a server-side request forgery vulnerability. An attacker may leverage this issue to make the vulnerable server perform port scanning of hosts in internal or external networks; other attacks are also possible. WordPress versions ranging from 3.7 and up to (and including) 6.1.1 are vulnerable.
Remediation
Block/Turn off access to XMLRPC/pingbacks as per researchers recommandation
References
https://blog.sonarsource.com/wordpress-core-unauthenticated-blind-ssrf/
https://sploitus.com/exploit?id=WPEX-ID:C8814E6E-78B3-4F63-A1D3-6906A84C1F11
Related Vulnerabilities
Jboss EAP Incorrect Authorization Vulnerability (CVE-2017-12196)
MySQL CVE-2023-21950 Vulnerability (CVE-2023-21950)
WordPress Plugin Stop User Enumeration User Enumeration (1.3.4)
WordPress Plugin Subscribe to Comments Multiple Cross-Site Scripting Vulnerabilities (2.0.4)
osCommerce Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-27975)