Extension WordPress
Vulnérabilités WPGet API – Connect to any external REST API
Cette page rassemble les failles publiées pour WPGet API – Connect to any external REST API, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de WPGet API – Connect to any external REST API
2 fiches
WPGet API <= 2.2.10 – Authenticated (Administrator+) Server-Side Request Forgery
The WPGet API – Connect to any external REST API plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.2.10. This makes it possible for authenticated attackers, with Administrator-level access and…
*-2.2.10
2.25.1
06/03/2025
WPGetAPI 2.1.0 – 2.2.1 – Authenticated (Subscriber+) Arbitrary Options Update
The WPGetAPI plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the import_endpoints() function in versions 2.1.0 – 2.2.1. This makes it possible for authenticated attackers, with subscriber-level access and…
[2.1.0, 2.2.2)
2.2.2
02/10/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.