The WP Meta SEO WordPress plugin before 4.5.3 does not authorize several ajax actions, allowing low-privilege users to make updates to certain data and leading to an arbitrary redirect vulnerability.
CVSS
No CVSS.
References
Configurations
No configuration.
Information
Published : 2023-03-20 09:15
Updated : 2023-03-21 04:51
NVD link : CVE-2023-0876
Mitre link : CVE-2023-0876
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
No product.