CVE-2019-17673
WordPress before 5.2.4 is vulnerable to poisoning of the cache of JSON GET requests because certain requests lack a Vary
WordPress before 5.2.4 is vulnerable to poisoning of the cache of JSON GET requests because certain requests lack a Vary: Origin header.
HIGH · CVSS 7.5
EPSS 0.03574
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0