The Subscribe2 WordPress plugin... CVE-2022-4309

- AV AC AU C I A
发布: 2023-01-16
修订: 2024-11-21

The Subscribe2 WordPress plugin before 10.38 does not have CSRF check when deleting users, which could allow attackers to make a logged in admin delete arbitrary users by knowing their email via a CSRF attack.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息