CVE-2024-13580
11.03.2025, 06:15
The XV Random Quotes WordPress plugin through 1.40 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin reset them via a CSRF attack
Vendor | Product | Version |
---|---|---|
xavi.ivars | xv_random_quotes | 𝑥 ≤ 1.40 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration