CVE-2024-56279
CVSS 3.1 Score 6.4 of 10 (medium)
Details
Published Jan 7, 2025
CWE ID 918
Summary
CVE-2024-56279 is a newly disclosed Server-Side Request Forgery (SSRF) vulnerability that affects the Tips and Tricks HQ Compact WP Audio Player. This issue permits unauthorized server-side requests, potentially leading to information disclosure or other malicious activities. The vulnerability impacts versions of the Compact WP Audio Player from n/a through 1.9.14. Users are advised to update their plugins to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Compact WP Audio Player Plugin