CVE-2020-13426

Publication date

2020-06-22 17:09:19

Family

mitre

State

PUBLISHED

Description

The Multi-Scheduler plugin 1.0.0 for WordPress has a Cross-Site Request Forgery (CSRF) vulnerability in the forms it presents, allowing the possibility of deleting records (users) when an ID is known.