Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hxv9-fx39-qg4c

Опубликовано: 07 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

The Security Optimizer WordPress plugin from 1.5.8 to 1.6.4 does not correctly validate requests to its optional IP-based login restriction feature, allowing the restriction to be bypassed so that unauthenticated requests from non-allowlisted IP addresses can reach and use the login form, defeating the access control the administrator configured.

The Security Optimizer WordPress plugin from 1.5.8 to 1.6.4 does not correctly validate requests to its optional IP-based login restriction feature, allowing the restriction to be bypassed so that unauthenticated requests from non-allowlisted IP addresses can reach and use the login form, defeating the access control the administrator configured.

EPSS

Процентиль: 16%
0.00245
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-693

Связанные уязвимости

CVSS3: 5.3
nvd
около 2 месяцев назад

The Security Optimizer WordPress plugin from 1.5.8 to 1.6.4 does not correctly validate requests to its optional IP-based login restriction feature, allowing the restriction to be bypassed so that unauthenticated requests from non-allowlisted IP addresses can reach and use the login form, defeating the access control the administrator configured.

EPSS

Процентиль: 16%
0.00245
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-693