cleantalk
Vulnerabilities and Security Researches

Custom CSS, JS & PHP, e03420c55099714ac90da016761d318e5e1cb6db

Published on
-
Research Description
Custom CSS, JS &amp; PHP [custom-css] <= 2.0.7 (unfixed) Various Affected Software (Various Versions) - Cross-Site Request Forgery Bypass Over 70 plugins and themes were vulnerable to Cross-Site Request Forgery due to improperly implemented nonce protection that could be bypassed.
Affected versions
Min -, max 2.0.7.
Status
vulnerable