Описание
Cross-Site Request Forgery (CSRF) vulnerability in Private Messages For WordPress plugin <= 2.1.10 at WordPress allows attackers to send messages.
Cross-Site Request Forgery (CSRF) vulnerability in Private Messages For WordPress plugin <= 2.1.10 at WordPress allows attackers to send messages.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2022-29441
- https://patchstack.com/database/vulnerability/private-messages-for-wordpress/wordpress-private-messages-for-wordpress-plugin-2-1-10-sending-messages-via-cross-site-request-forgery-csrf-vulnerability
- https://wordpress.org/plugins/private-messages-for-wordpress
Связанные уязвимости
CVSS3: 4.3
nvd
больше 3 лет назад
Cross-Site Request Forgery (CSRF) vulnerability in Private Messages For WordPress plugin <= 2.1.10 at WordPress allows attackers to send messages.