CVE-2021-24749
29.11.2021, 09:15
The URL Shortify WordPress plugin before 1.5.1 does not have CSRF check in place when bulk-deleting links or groups, which could allow attackers to make a logged in admin delete arbitrary link and group via a CSRF attack.
Vendor | Product | Version |
---|---|---|
kazencoders | url_shortify | 𝑥 < 1.5.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration