CVE-2022-0707
18.04.2022, 18:15
The Easy Digital Downloads WordPress plugin before 2.11.6 does not have CSRF check in place when inserting payment notes, which could allow attackers to make a logged admin insert arbitrary notes via a CSRF attack
Vendor | Product | Version |
---|---|---|
awesomemotive | easy_digital_downloads | 𝑥 < 2.11.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration