CVE-2022-2762

Publication date

2022-10-25 00:00:00

Family

WPScan

State

PUBLISHED

Description

The AdminPad WordPress plugin before 2.2 does not have CSRF check when updating admins note, allowing attackers to make a logged in admin update their notes via a CSRF attack