A weakness has been identified in rachelos WeRSS we-mp...
Moderate severity
Unreviewed
Published
Nov 14, 2025
to the GitHub Advisory Database
•
Updated Nov 14, 2025
Description
Published by the National Vulnerability Database
Nov 14, 2025
Published to the GitHub Advisory Database
Nov 14, 2025
Last updated
Nov 14, 2025
A weakness has been identified in rachelos WeRSS we-mp-rss up to 1.4.7. Affected by this vulnerability is the function do_job of the file /rachelos/we-mp-rss/blob/main/jobs/mps.py of the component Webhook Module. Executing manipulation of the argument web_hook_url can lead to server-side request forgery. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.
References