WordPress plugin Import XML and RSS Feeds (import-xml-feed) plugin 2.0.1 contains a server-side request forgery (SSRF) vulnerability via the data parameter in a moove_read_xml action.
id: CVE-2020-24148
info:
name: Import XML & RSS Feeds WordPress Plugin <= 2.0.1 Server-Side Reque
...