CVE · High

CVE-2024-4469 — WP STAGING – WordPress Backups, Restore, Migration & Clone [wp-staging] < 3.5.0

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-4469 WP STAGING – WordPress Backups, Restore, Migration & Clone [wp-staging] < 3.5.0 Server-Side Request Forgery (SSRF) High 7.5 < 3.5.0 3.5.0 2024-05-10

CVE-2024-4469

The WP STAGING plugin through version 3.4.3 contains a server-side request forgery vulnerability that allows unauthenticated users to initiate web requests to any destination from the affected server. An attacker could exploit this flaw to interact with internal services and potentially access or alter sensitive information accessible from within the network.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.