CVE-2022-3590


WP <= 6.1.1 - Unauthenticated Blind SSRF via DNS Rebinding

WordPress is affected by an unauthenticated blind SSRF in the pingback feature. Because of a TOCTOU race condition between the validation checks and the HTTP request, attackers can reach internal hosts that are explicitly forbidden.



We have discovered 3,568,724 live websites that are affected by CVE-2022-3590.

Contact us to get more info




Affected Software

Product  WordPress
Category Content Management System
Vulnerable Versions
  • from 4.1.30 through 6.1.1
Total Vulnerable Versions780
Vulnerable Domains3,568,724 live websites (31.31% of WordPress install base)


Common Weakness Enumeration


CWE-918 Server-Side Request Forgery (SSRF)


Distribution by Website Rank

The diagram provides a graphic representation of the correlation between the occurrence of CVE-2022-3590 and the relative popularity of websites


Details

  • Published - Dec 14, 2022
  • Updated - Jan 10, 2023

Credits

  • Thomas Chauchefoin (finder)
  • WPScan (coordinator)





Countries

United States800,135 websites



Germany324,437 websites
Japan277,751 websites
France206,248 websites
Italy176,883 websites
GB157,773 websites
Russia134,328 websites
Netherlands120,817 websites
Poland115,990 websites
Spain108,295 websites

TLDs

.com1,442,825 websites
.de205,922 websites
.org142,087 websites
.it116,018 websites
.ru108,553 websites
.net106,074 websites
.nl97,618 websites
.co.uk92,831 websites
.pl85,845 websites
.fr82,758 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


Geographical Distribution

The distribution of websites across the globe that are exposed to CVE-2022-3590 through included software libraries and plugins.



References


Websites affected by CVE-2022-3590

Top websites that are affected by CVE-2022-3590. Please click on the "Contact us" button above to get more information.
DomainCountryRankContacts
************.org Singapore***
***.*****************.com United States***
****.br Brazil***
****.******.com Singapore***
***.**********.com United States***
***.*********.com Germany***
*******.******.com United States***
***.*******.com Turkey***
****.*****.net United States***
***.*********.com United States***
See full domain list