CVE-2023-0420

CVE-2023-0420

The Custom Post Type and Taxonomy GUI Manager WordPress plugin through 1.1 does not have CSRF, and is lacking sanitising as well as escaping in some parameters, allowing attackers to make a logged in admin put Stored Cross-Site Scripting payloads via CSRF

Source: CVE-2023-0420

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다