CVE-2023-7268

Publication date

2024-07-19 06:00:04

Family

WPScan

State

PUBLISHED

Description

The ArtPlacer Widget WordPress plugin before 2.21.2 does not have authorisation check in place when deleting widgets, allowing ay authenticated users, such as subscriber, to delete arbitrary widgets