Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by CWE-283
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24501 1 Amentotech 1 Workreap 2021-08-17 5.5 MEDIUM 8.1 HIGH
The Workreap WordPress theme before 2.2.2 had several AJAX actions missing authorization checks to verify that a user was authorized to perform critical operations such as modifying or deleting objects. This allowed a logged in user to modify or delete objects belonging to other users on the site.