← back
CVE-2021-24353observed exploitationCWE-862

Simple 301 Redirects by BetterLinks - 2.0.0 – 2.0.3 - Unauthenticated Redirect Import

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 1.1%
from disclosure to weapon
Published on NVDJun 14
VulnCheck+952d
exploitation probability
1.1%top 37% of all CVEs
observed exploitation
yesVulnCheck
The import_data function of the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4 had no capability or nonce checks making it possible for unauthenticated users to import a set of site redirects.