Description
WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability because Windows paths are mishandled during certain validation of relative URLs.
Remediation
References
Related Vulnerabilities
Internet Information Services CVE-2008-0074 Vulnerability (CVE-2008-0074)
WordPress Plugin WP Limit Login Attempts SQL Injection (2.0.0)
IBM WebSEAL CVE-2019-4145 Vulnerability (CVE-2019-4145)
WordPress Plugin Breezing Forms Cross-Site Scripting (1.2.7.33)
WordPress Plugin Digital Publications by Supsystic Multiple Vulnerabilities (1.6.9)