Security Advisory

CVE-2021-36915

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-10-11 19:33:59
Last updated 2026-04-28 16:07:38
Assigner Patchstack
State PUBLISHED

Description

Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder plugin <= 3.6.0 at WordPress allows uploading the JSON file and updating the options. Requires Import and Export add-on.