CVE-2024-6860
09.04.2025, 06:15
The WP MultiTasking WordPress plugin through 0.1.12 does not have CSRF check when updating its permalink suffix settings, which could allow attackers to make logged admins perform such action via a CSRF attack
Vendor | Product | Version |
---|---|---|
ngothang | wp_multitasking | 𝑥 ≤ 0.1.12 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration