CVE-2026-11397 | vjinfotech WP Import Export Lite Plugin up to 3.9.30 on WordPress Cloud Metadata Endpoint wp_safe_remote_get server-side request forgery (EUVD-2026-41489)

SecurityVulns

A vulnerability described as critical has been identified in vjinfotech WP Import Export Lite Plugin up to 3.9.30 on WordPress. The affected element is the function wp_safe_remote_get of the component Cloud Metadata Endpoint. Such manipulation leads to server-side request forgery.

This vulnerability is uniquely identified as CVE-2026-11397. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More