CVE-2024-7862
EUVD-2024-4871312.09.2024, 06:15
The blogintroduction-wordpress-plugin WordPress plugin through 0.3.0 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| kimhuebel | blogintroduction-wordpress-plugin | 𝑥 ≤ 0.3.0 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| blogintroduction_wordpress_plugin | blogintroduction_wordpress_plugin | 𝑥 ≤ 0.3.0 | ADP |
Common Weakness Enumeration