Loading market data...
← Back to CVE feed

CVE-2026-83543

UNKNOWN View on NVD ↗

Description

The Greenshift WordPress plugin before 13.2.0 does not validate a user-supplied URL before fetching it server-side, allowing users with contributor-level access and above to make the server issue requests to arbitrary hosts and read the response.

Published: Sep 05, 2026 07:17 UTC Modified: Sep 05, 2026 07:17 UTC