Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Wp Debugging Project Subscribe
Filtered by product Wp Debugging
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24779 1 Wp Debugging Project 1 Wp Debugging 2022-10-24 4.3 MEDIUM 6.5 MEDIUM
The WP Debugging WordPress plugin before 2.11.0 has its update_settings() function hooked to admin_init and is missing any authorisation and CSRF checks, as a result, the settings can be updated by unauthenticated users.