RSS   Vulnerabilities for 'Hubspot'   RSS

2022-05-02
 
CVE-2022-1239

CWE-918
 

 
The HubSpot WordPress plugin before 8.8.15 does not validate the proxy URL given to the proxy REST endpoint, which could allow users with the edit_posts capability (by default contributor and above) to perform SSRF attacks

 

 >>> Vendor: Hubspot 3 Products
Hubl-server
Jinjava
Hubspot


Copyright 2024, cxsecurity.com

 

Back to Top