CVE-2024-2040

Publication date

2024-07-03 06:00:02

Family

WPScan

State

PUBLISHED

Description

The Himer WordPress theme before 2.1.1 does not have CSRF checks in some places, which could allow attackers to make users join private groups via a CSRF attack