← back
CVE-2021-24641

Images to WebP < 1.9 - Multiple Cross Site Request Forgery (CSRF)

EPSS 0.5%CWE-352
The Images to WebP WordPress plugin before 1.9 does not have CSRF checks in place when performing some administrative actions, which could result in modification of plugin settings, Denial-of-Service, as well as arbitrary image conversion
Affected products
Unknown · Images to WebP

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →