๐Ÿ” CVE Alert

CVE-2025-64252

MEDIUM 4.9

WordPress ANAC XML Viewer plugin <= 1.8.2 - Server Side Request Forgery (SSRF) vulnerability

CVSS Score
4.9
EPSS Score
0.0%
EPSS Percentile
0th

Server-Side Request Forgery (SSRF) vulnerability in Marco Milesi ANAC XML Viewer anac-xml-viewer allows Server Side Request Forgery.This issue affects ANAC XML Viewer: from n/a through <= 1.8.2.

CWE CWE-918
Vendor marco milesi
Product anac xml viewer
Published Jan 22, 2026
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for marco milesi anac xml viewer

Be the first to know when new medium vulnerabilities affecting marco milesi anac xml viewer are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Marco Milesi / ANAC XML Viewer
0 โ‰ค 1.8.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/anac-xml-viewer/vulnerability/wordpress-anac-xml-viewer-plugin-1-8-2-server-side-request-forgery-ssrf-vulnerability?_s_id=cve

Credits

Nabil Irawan | Patchstack Bug Bounty Program