CVE-2022-1672
17.07.2022, 11:15
The Insights from Google PageSpeed WordPress plugin before 4.0.7 does not verify for CSRF before doing various actions such as deleting Custom URLs, which could allow attackers to make a logged in admin perform such actions via CSRF attacks
Vendor | Product | Version |
---|---|---|
insights_from_google_pagespeed_project | insights_from_google_pagespeed | 𝑥 < 4.0.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration