CVE-2023-5509

Publication date

2023-11-20 18:55:10

Family

WPScan

State

PUBLISHED

Description

The myStickymenu WordPress plugin before 2.6.5 does not adequately authorize some ajax calls, allowing any logged-in user to perform the actions.