Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Batch Cat Project Subscribe
Filtered by product Batch Cat
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24788 1 Batch Cat Project 1 Batch Cat 2022-07-30 4.0 MEDIUM 6.5 MEDIUM
The Batch Cat WordPress plugin through 0.3 defines 3 custom AJAX actions, which both require authentication but are available for all roles. As a result, any authenticated user (including simple subscribers) can add/set/delete arbitrary categories to posts.