Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Disable Comments Subscribe
Filtered by product Disable Comments Project
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-2550 1 Disable Comments 1 Disable Comments Project 2018-04-17 6.8 MEDIUM 8.8 HIGH
Cross-site request forgery (CSRF) vulnerability in the Disable Comments plugin before 1.0.4 for WordPress allows remote attackers to hijack the authentication of administrators for requests that enable comments via a request to the disable_comments_settings page to wp-admin/options-general.php.