CVE-2021-24776

Publication date

2021-11-17 10:15:37

Family

WPScan

State

PUBLISHED

Description

The WP Performance Score Booster WordPress plugin before 2.1 does not have CSRF check when saving its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.