Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6w96-gvjq-xh8h

Опубликовано: 02 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

The WPBookit WordPress plugin through 1.0.7 lacks a CSRF check when deleting customers. This could allow an unauthenticated attacker to delete any customer through a CSRF attack.

The WPBookit WordPress plugin through 1.0.7 lacks a CSRF check when deleting customers. This could allow an unauthenticated attacker to delete any customer through a CSRF attack.

EPSS

Процентиль: 8%
0.00029
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
около 1 месяца назад

The WPBookit WordPress plugin through 1.0.7 lacks a CSRF check when deleting customers. This could allow an unauthenticated attacker to delete any customer through a CSRF attack.

EPSS

Процентиль: 8%
0.00029
Низкий

6.5 Medium

CVSS3