CVE-2023-2842

Publication date

2023-06-27 13:17:17

Family

WPScan

State

PUBLISHED

Description

The WP Inventory Manager WordPress plugin before 2.1.0.14 does not have CSRF checks, which could allow attackers to make logged-in admins delete Inventory Items via a CSRF attack