The LearnPress WordPress plugin before 4.4.4 does not validate a user-supplied URL before the server fetches it, allowing users with the instructor role to induce the server to issue requests to arbitrary external hosts, a blind and bounded server-side request forgery.
Metrics
Affected Vendors & Products
References
History
Mon, 10 Aug 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Learnpress
Learnpress learnpress Wordpress Wordpress wordpress |
|
| Vendors & Products |
Learnpress
Learnpress learnpress Wordpress Wordpress wordpress |
Mon, 10 Aug 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-918 |
Mon, 10 Aug 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The LearnPress WordPress plugin before 4.4.4 does not validate a user-supplied URL before the server fetches it, allowing users with the instructor role to induce the server to issue requests to arbitrary external hosts, a blind and bounded server-side request forgery. | |
| Title | LearnPress < 4.4.4 - Instructor+ Server-Side Request Forgery via openai_apply_image_feature | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2026-08-10T06:00:14.376Z
Reserved: 2026-06-23T09:44:42.544Z
Link: CVE-2026-12971
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-10T08:00:05Z