Логотип exploitDog
bind:CVE-2021-24148
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24148

Количество 2

Количество 2

nvd логотип

CVE-2021-24148

почти 5 лет назад

A business logic issue in the MStore API WordPress plugin, versions before 3.2.0, had an authentication bypass with Sign In With Apple allowing unauthenticated users to recover an authentication cookie with only an email address.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-99jg-2fvv-2jfq

больше 3 лет назад

A business logic issue in the MStore API WordPress plugin, versions before 3.2.0, had an authentication bypass with Sign In With Apple allowing unauthenticated users to recover an authentication cookie with only an email address.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24148

A business logic issue in the MStore API WordPress plugin, versions before 3.2.0, had an authentication bypass with Sign In With Apple allowing unauthenticated users to recover an authentication cookie with only an email address.

CVSS3: 9.8
6%
Низкий
почти 5 лет назад
github логотип
GHSA-99jg-2fvv-2jfq

A business logic issue in the MStore API WordPress plugin, versions before 3.2.0, had an authentication bypass with Sign In With Apple allowing unauthenticated users to recover an authentication cookie with only an email address.

6%
Низкий
больше 3 лет назад

Уязвимостей на страницу