CVE-2024-3643
16.05.2024, 06:15
The Newsletter Popup WordPress plugin through 1.2 does not have CSRF check when deleting list, which could allow attackers to make logged in admins perform such action via a CSRF attack
Vendor | Product | Version |
---|---|---|
newsletter_popup_project | newsletter_popup | 𝑥 ≤ 1.2 |
mndpsingh287 | newsletter_popup | 𝑥 ≤ 1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration