Lucene search

K
nvd[email protected]NVD:CVE-2024-0779
HistoryMar 18, 2024 - 7:15 p.m.

CVE-2024-0779

2024-03-1819:15:06
web.nvd.nist.gov
1
wordpress
security vulnerability
csrf protection
authorization
unauthenticated users

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.1%

The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation and CSRF in various function hooked to admin_init, allowing unauthenticated users to call them and unlink arbitrary users Instagram Account for example

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.1%

Related for NVD:CVE-2024-0779