Lucene search

K
patchstackSuppawit PunhakitPATCHSTACK:8BE4ADFB970C1A5EE12550BBC9068888
HistoryOct 21, 2021 - 12:00 a.m.

WordPress Advanced Forms plugin <= 1.6.8 - Arbitrary User Email Address Update via IDOR vulnerability

2021-10-2100:00:00
Suppawit Punhakit
patchstack.com
12

0.002 Low

EPSS

Percentile

59.9%

Arbitrary User Email Address Update via IDOR vulnerability discovered by Suppawit Punhakit in WordPress Advanced Forms plugin (versions <= 1.6.8).

Solution

           Update the WordPress Advanced Forms plugin to the latest available version (at least 1.6.9).
CPENameOperatorVersion
advanced formsle1.6.8

0.002 Low

EPSS

Percentile

59.9%

Related for PATCHSTACK:8BE4ADFB970C1A5EE12550BBC9068888