CVE Database /
CVE-2022-41609
CVE · Medium
CVE-2022-41609 — Better Messages – Chat Rooms, Group Chat, Private Messages & AI Chat Bots [bp-better-messages] < 1.9.10.69
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2022-41609
|
Better Messages – Chat Rooms, Group Chat, Private Messages & AI Chat Bots [bp-better-messages] < 1.9.10.69 |
Server-Side Request Forgery (SSRF) |
Medium
6.4
|
< 1.9.10.69
|
1.9.10.69 |
2022-10-21 |
—
|
CVE-2022-41609
The Better Messages plugin for WordPress contains a server-side request forgery vulnerability affecting versions 1.9.10.68 and earlier. Authenticated users with subscriber-level access or greater can craft malicious requests to interact with internal network resources, potentially exposing sensitive information. This vulnerability has been remedied in version 1.9.10.69 and later.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings