CVE-2021-24776
17.11.2021, 11:15
The WP Performance Score Booster WordPress plugin before 2.1 does not have CSRF check when saving its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.
| Vendor | Product | Version |
|---|---|---|
| wp_performance_score_booster_project | wp_performance_score_booster | 𝑥 < 2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration