Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-56234
HistoryJul 13, 2022 - 12:00 a.m.

WordPress Cache Images plugin跨站请求伪造漏洞

2022-07-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
10

0.001 Low

EPSS

Percentile

26.5%

WordPress and WordPress plugin are both products of the WordPress Foundation. WordPress is a set of blogging platforms developed using the PHP language. The WordPress plugin is an application plugin. versions of the WordPress Cache Images plugin prior to 3.2.1 are vulnerable to cross-site request forgery, which stems from a failure to implement random number checking and can be exploited by attackers to upload images by executing CSRF attack to upload images.

CPENameOperatorVersion
wordpress cache images pluginlt3.2.1

0.001 Low

EPSS

Percentile

26.5%