Beveiligingsadvies

CVE-2024-3590

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-05-09 06:00:02
Laatst bijgewerkt 2024-08-21 20:51:24
Toegewezen door WPScan
CVSS-score 6.1
Status PUBLISHED

Beschrijving

The LetterPress WordPress plugin through 1.2.2 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks, such as delete arbitrary subscribers