Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-43h4-q789-j3pr

Опубликовано: 18 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

The Really Simple Security WordPress plugin before 9.8.3 does not validate a client-supplied address value before using it as a storage key in one of its own options, allowing unauthenticated attackers to grow that option without bound and to slow the site's handling of missing pages.

The Really Simple Security WordPress plugin before 9.8.3 does not validate a client-supplied address value before using it as a storage key in one of its own options, allowing unauthenticated attackers to grow that option without bound and to slow the site's handling of missing pages.

EPSS

Процентиль: 16%
0.00248
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 5.3
nvd
6 дней назад

The Really Simple Security WordPress plugin before 9.8.3 does not validate a client-supplied address value before using it as a storage key in one of its own options, allowing unauthenticated attackers to grow that option without bound and to slow the site's handling of missing pages.

EPSS

Процентиль: 16%
0.00248
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-400