Input validation vulnerability in Image Optimizer, Resizer and CDN – Sirv 7.2.0

The Sirv plugin for WordPress, which helps optimize, resize and use a CDN for images, has a security issue called Server-Side Request Forgery. This means that anyone with subscriber-level access or higher can make web requests from the plugin to any location, even within the web application. This could be used to get information from internal services.

Detected in:

Image Optimizer, Resizer and CDN – Sirv fixed vulnerable versions: >= * <= 7.2.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.