CVE-2022-38461
17.11.2022, 22:15
Broken Access Control vulnerability in WPML Multilingual CMS premium plugin <= 4.5.10 on WordPress allows users with a subscriber or higher user role to change plugin settings (selected language for legacy widgets, the default behavior for media content).Enginsight
Vendor | Product | Version |
---|---|---|
wpml | wpml | 𝑥 ≤ 4.5.10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References