CVE-2023-2434
31.05.2023, 04:15
The Nested Pages plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'reset' function in versions up to, and including, 3.2.3. This makes it possible for authenticated attackers, with editor-level permissions and above, to reset plugin settings.Enginsight
Vendor | Product | Version |
---|---|---|
kylephillips | nested_pages | 𝑥 ≤ 3.2.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References