CVE-2024-4474
21.06.2024, 06:15
The WP Logs Book WordPress plugin through 1.0.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
Vendor | Product | Version |
---|---|---|
onetarek | wp-logs-book | 𝑥 ≤ 1.0.1 |
onetarek | wp_logs_book | 𝑥 ≤ 1.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration