Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Hubspot Subscribe
Filtered by product Hubspot
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1239 1 Hubspot 1 Hubspot 2022-05-09 6.5 MEDIUM 8.8 HIGH
The HubSpot WordPress plugin before 8.8.15 does not validate the proxy URL given to the proxy REST endpoint, which could allow users with the edit_posts capability (by default contributor and above) to perform SSRF attacks