Vulnerability Description
The Hot Linked Image Cacher WordPress plugin through 1.16 is vulnerable to CSRF. This can be used to store / cache images from external domains on the server, which could lead to legal risks (due to copyright violations or licensing rules).
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hot Linked Image Cacher Project | Hot Linked Image Cacher | <= 1.16 |
Related Weaknesses (CWE)
References
- https://wpscan.com/vulnerability/b50e7622-c1dc-485b-a5f5-b010b40eef20ExploitThird Party Advisory
- https://wpscan.com/vulnerability/b50e7622-c1dc-485b-a5f5-b010b40eef20ExploitThird Party Advisory
FAQ
What is CVE-2022-1765?
CVE-2022-1765 is a vulnerability with a CVSS score of 8.8 (HIGH). The Hot Linked Image Cacher WordPress plugin through 1.16 is vulnerable to CSRF. This can be used to store / cache images from external domains on the server, which could lead to legal risks (due to c...
How severe is CVE-2022-1765?
CVE-2022-1765 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-1765?
Check the references section above for vendor advisories and patch information. Affected products include: Hot Linked Image Cacher Project Hot Linked Image Cacher.