Beveiligingsadvies

CVE-2022-23180

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-01-16 15:52:09
Laatst bijgewerkt 2025-06-16 18:03:39
Toegewezen door WPScan
CVSS-score 4.3
Status PUBLISHED

Beschrijving

The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.7.4 doesn't have authorisation and nonce checks, which could allow any authenticated users, such as subscriber to update and change various settings