vulnerability
Wordpress: CVE-2023-22622: Uncontrolled Resource Consumption ('Resource Exhaustion')
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:A/AC:M/Au:N/C:N/I:N/A:C) | Jan 5, 2023 | Jan 23, 2023 | Jan 30, 2025 |
Severity
6
CVSS
(AV:A/AC:M/Au:N/C:N/I:N/A:C)
Published
Jan 5, 2023
Added
Jan 23, 2023
Modified
Jan 30, 2025
Description
WordPress through 6.1.1 depends on unpredictable client visits to cause wp-cron.php execution and the resulting security updates, and the source code describes "the scenario where a site may not receive enough visits to execute scheduled tasks in a timely manner," but neither the installation guide nor the security guide mentions this default behavior, or alerts the user about security risks on installations with very few visits.
Solution
wordpress-upgrade-6_1_2
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.