CVE-2021-25097
01.02.2022, 13:15
The LabTools WordPress plugin through 1.0 does not have proper authorisation and CSRF check in place when deleting publications, allowing any authenticated users, such as subscriber to delete arbitrary publication
| Vendor | Product | Version |
|---|---|---|
| creativityjuice | labtools | 𝑥 ≤ 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration