Medium 5.9
2025-08-22< 1.19.2
WordPress Crontrol Plugin 1.17.0-1.19.1 is vulnerable to Server Side Request Forgery (SSRF)
Minimum safe version
1.19.2
Update to 1.19.2 or later to address 5 fixable vulnerabilities
WordPress Crontrol Plugin 1.17.0-1.19.1 is vulnerable to Server Side Request Forgery (SSRF)
CVE-2024-28850
WP Crontrol <= 1.2.3 - Authenticated Reflected Cross-Site Scripting (XSS)
WP Crontrol < 1.3 - Reflected Cross-Site Scripting
WordPress Crontrol Plugin <= 1.2.3 - Cross Site Scripting (XSS)