CVE-2024-10580
EUVD-2024-3343927.11.2024, 07:15
The Hustle – Email Marketing, Lead Generation, Optins, Popups plugin for WordPress is vulnerable to unauthorized form submissions due to a missing capability check on the submit_form() function in all versions up to, and including, 7.8.5. This makes it possible for unauthenticated attackers to submit unpublished forms.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| wpmudev | hustle | 𝑥 ≤ 7.8.5 | ADP |
Common Weakness Enumeration
References