Lucene search

K
cvelistPatchstackCVELIST:CVE-2023-32579
HistoryNov 09, 2023 - 9:18 p.m.

CVE-2023-32579 WordPress Forget About Shortcode Buttons Plugin <= 2.1.2 is vulnerable to Broken Access Control

2023-11-0921:18:23
CWE-352
Patchstack
www.cve.org
wordpress
shortcode
buttons
plugin
vulnerable
broken access control
csrf
cve-2023-32579

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.1%

Cross-Site Request Forgery (CSRF) vulnerability in Designs & Code Forget About Shortcode Buttons plugin <=Β 2.1.2 versions.

CNA Affected

[
  {
    "collectionURL": "https://wordpress.org/plugins",
    "defaultStatus": "unaffected",
    "packageName": "forget-about-shortcode-buttons",
    "product": "Forget About Shortcode Buttons",
    "vendor": "Designs & Code",
    "versions": [
      {
        "changes": [
          {
            "at": "2.1.3",
            "status": "unaffected"
          }
        ],
        "lessThanOrEqual": "2.1.2",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.1%

Related for CVELIST:CVE-2023-32579