CVE-2024-4535
27.05.2024, 06:15
The KKProgressbar2 Free WordPress plugin through 1.1.4.2 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks
| Vendor | Product | Version |
|---|---|---|
| krzysztof-furtak | kkprogressbar2 | 1.0 |
| krzysztof-furtak | kkprogressbar2 | 1.0.1 |
| krzysztof-furtak | kkprogressbar2 | 1.1 |
| krzysztof-furtak | kkprogressbar2 | 1.1.1 |
| krzysztof-furtak | kkprogressbar2 | 1.1.2 |
| krzysztof-furtak | kkprogressbar2 | 1.1.4 |
| krzysztof-furtak | kkprogressbar2 | 1.1.4.2 |
| krzysztof-furtak | kkprogressbar2 | 1.2 |
| krzysztof-furtak | kkprogressbar2 | 1.3 |
| krzysztof-furtak | kkprogressbar2 | 1.3.1 |
| krzysztof-furtak | kkprogressbar2 | 1.3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration