Логотип exploitDog
bind:CVE-2022-1672
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-1672

Количество 2

Количество 2

nvd логотип

CVE-2022-1672

около 3 лет назад

The Insights from Google PageSpeed WordPress plugin before 4.0.7 does not verify for CSRF before doing various actions such as deleting Custom URLs, which could allow attackers to make a logged in admin perform such actions via CSRF attacks

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-28mj-h58q-vmmm

около 3 лет назад

The Insights from Google PageSpeed WordPress plugin before 4.0.7 does not verify for CSRF before doing various actions such as deleting Custom URLs, which could allow attackers to make a logged in admin perform such actions via CSRF attacks

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-1672

The Insights from Google PageSpeed WordPress plugin before 4.0.7 does not verify for CSRF before doing various actions such as deleting Custom URLs, which could allow attackers to make a logged in admin perform such actions via CSRF attacks

CVSS3: 8.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-28mj-h58q-vmmm

The Insights from Google PageSpeed WordPress plugin before 4.0.7 does not verify for CSRF before doing various actions such as deleting Custom URLs, which could allow attackers to make a logged in admin perform such actions via CSRF attacks

CVSS3: 8.8
0%
Низкий
около 3 лет назад

Уязвимостей на страницу