CVE-2021-24989CWE-352

CVE-2021-24989: falha em Accept Donations with PayPal

Accept Donations with PayPal < 1.3.4 - Arbitrary Post Deletion via CSRF

Publicada em · Atualizada em

3Vexday Risk Score

Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.

ssvc Trackepss 0.5%
probabilidade de exploração
0.5%top 56% das CVEs
exploração observada
nãonenhuma fonte reporta
The Accept Donations with PayPal WordPress plugin before 1.3.4 does not have CSRF check in place and does not ensure that the post to be deleted belongs to the plugin, allowing attackers to make a logged in admin delete arbitrary posts from the blog