Lucene search

K
wpvulndbWpvulndbWPVDB-ID:4BC0EDB5-7946-4F7E-B567-B0AA901121B1
HistoryJan 10, 2023 - 12:00 a.m.

Royal Elementor Addons < 1.3.60 - Subscriber+ Mega Menu Settings Update

2023-01-1000:00:00
wpscan.com
13
royal elementor addons
mega menu
authorization
csrf
subscriber
security update
software

EPSS

0.001

Percentile

26.3%

The plugin does not have authorisation and CSRF checks when updating the mega menu settings, which could allow any authenticated user, such as subscriber to perform such action

EPSS

0.001

Percentile

26.3%

Related for WPVDB-ID:4BC0EDB5-7946-4F7E-B567-B0AA901121B1