HIGH · 8.8

CVE-2022-1765

The Hot Linked Image Cacher WordPress plugin through 1.16 is vulnerable to CSRF. This can be used to store / cache images from external domains on the server, which could lead to legal risks (due to c...

Vulnerability Description

The Hot Linked Image Cacher WordPress plugin through 1.16 is vulnerable to CSRF. This can be used to store / cache images from external domains on the server, which could lead to legal risks (due to copyright violations or licensing rules).

CVSS Score

8.8

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
Hot Linked Image Cacher ProjectHot Linked Image Cacher<= 1.16

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-1765?

CVE-2022-1765 is a vulnerability with a CVSS score of 8.8 (HIGH). The Hot Linked Image Cacher WordPress plugin through 1.16 is vulnerable to CSRF. This can be used to store / cache images from external domains on the server, which could lead to legal risks (due to c...

How severe is CVE-2022-1765?

CVE-2022-1765 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-1765?

Check the references section above for vendor advisories and patch information. Affected products include: Hot Linked Image Cacher Project Hot Linked Image Cacher.