Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5ppv-gw49-frmx

Опубликовано: 11 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

The Gutena Forms WordPress plugin before 1.6.1 does not validate option to be updated, which could allow contributors and above role to update arbitrary boolean and array options (such as users_can_register).

The Gutena Forms WordPress plugin before 1.6.1 does not validate option to be updated, which could allow contributors and above role to update arbitrary boolean and array options (such as users_can_register).

EPSS

Процентиль: 9%
0.00032
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 6.8
nvd
около 1 месяца назад

The Gutena Forms WordPress plugin before 1.6.1 does not validate option to be updated, which could allow contributors and above role to update arbitrary boolean and array options (such as users_can_register).

EPSS

Процентиль: 9%
0.00032
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-639