CVE-2023-0820
03.04.2023, 15:15
The User Role by BestWebSoft WordPress plugin before 1.6.7 does not protect against CSRF in requests to update role capabilities, leading to arbitrary privilege escalation of any role.
Vendor | Product | Version |
---|---|---|
bestwebsoft | user_role | 𝑥 < 1.6.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration