CVE-2022-1576
EUVD-2022-2486711.07.2022, 13:15
The WP Maintenance Mode & Coming Soon WordPress plugin before 2.4.5 is lacking CSRF when emptying the subscribed users list, which could allow attackers to make a logged in admin perform such action via a CSRF attack
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| themeisle | wp_maintenance_mode_\&_coming_soon | 𝑥 < 2.4.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration