CVE-2022-1576
11.07.2022, 13:15
The WP Maintenance Mode & Coming Soon WordPress plugin before 2.4.5 is lacking CSRF when emptying the subscribed users list, which could allow attackers to make a logged in admin perform such action via a CSRF attack
Vendor | Product | Version |
---|---|---|
themeisle | wp_maintenance_mode_\&_coming_soon | 𝑥 < 2.4.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration