Description
Subscriber Server Side Request Forgery (SSRF) in Kirki <= 6.0.11 versions.
CVSS breakdown
CVSS 3.1
Attack Vector
Network
Attack Complexity
High
Privileges Required
Low
User Interaction
None
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None
Affected products
- themeum / Kirkin/a – 6.0.11