← volver
CVE-2022-0134

AnyComment < 0.2.18 - Arbitrary HyperComments Import/Revert via CSRF

EPSS 0.6%CWE-352
The AnyComment WordPress plugin before 0.2.18 does not have CSRF checks in the Import and Revert HyperComments features, allowing attackers to make logged in admin perform such actions via a CSRF attack
Productos afectados
Unknown · AnyComment

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →