← back
CVE-2022-0279CWE-362

AnyComment < 0.2.18 - Comment Rating Increase/Decrease via Race Condition

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 0.5%
exploitation probability
0.5%top 60% of all CVEs
observed exploitation
nono source reports it
The AnyComment WordPress plugin before 0.2.18 is affected by a race condition when liking/disliking a comment/reply, which could allow any authenticated user to quickly raise their rating or lower the rating of other users
Affected products
Unknown · AnyComment