Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-15281 | The 'wp_ajax_boost_proxy_ig' action allows administrators to make GET requests to arbitrary URLs. |
Wed, 11 Jun 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Automattic
Automattic jetpack Boost |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:automattic:jetpack_boost:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Automattic
Automattic jetpack Boost |
Sat, 17 May 2025 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 15 May 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The 'wp_ajax_boost_proxy_ig' action allows administrators to make GET requests to arbitrary URLs. | |
| Title | Jetpack Boost < 3.4.7 - Admin+ SSRF | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-05-17T03:44:48.193Z
Reserved: 2024-07-08T21:14:53.732Z
Link: CVE-2024-6584
Updated: 2025-05-17T03:44:43.788Z
Status : Analyzed
Published: 2025-05-15T20:15:55.323
Modified: 2025-06-11T17:13:03.797
Link: CVE-2024-6584
No data.
OpenCVE Enrichment
No data.
EUVD