CVE-2021-24852

Publication date

2021-11-17 10:15:55

Family

WPScan

State

PUBLISHED

Description

The MouseWheel Smooth Scroll WordPress plugin before 5.7 does not have CSRF check in place on its settings page, which could allow attackers to make a logged in admin change them via a CSRF attack