CVE-2020-13426
22.06.2020, 18:15
The Multi-Scheduler plugin 1.0.0 for WordPress has a Cross-Site Request Forgery (CSRF) vulnerability in the forms it presents, allowing the possibility of deleting records (users) when an ID is known.
| Vendor | Product | Version |
|---|---|---|
| bdtask | multi-scheduler | 1.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References