The PowerPress plugin for WordPress has a security vulnerability in versions up to and including 11.0.6. This vulnerability can be exploited by attackers with contributor-level permission or higher. They can make web requests to other locations from the web application and use this to query or change information from internal services.