The Authenticator WordPress plugin before 1.3.1 does not prevent subscribers from updating a site's feed access token, which may deny other users access to the functionality in certain configurations.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/802a2139-ab48-4281-888f-225e6e3134aa | Exploit Third Party Advisory |
Configurations
Information
Published : 2023-01-02 14:15
Updated : 2023-01-09 10:23
NVD link : CVE-2022-3994
Mitre link : CVE-2022-3994
JSON object : View
CWE
CWE-400
Uncontrolled Resource Consumption
Products Affected
authenticator_project
- authenticator