CVE-2024-3059
26.04.2024, 05:15
The ENL Newsletter WordPress plugin through 1.0.1 does not have CSRF checks in some places, which could allow attackers to make logged in admins delete arbitrary Campaigns via a CSRF attack
Vendor | Product | Version |
---|---|---|
enl_newsletter_plugin_project | enl-newsletter | 𝑥 ≤ 1.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration