cleantalk
Vulnerabilities and Security Researches

GDPR Cookie Compliance (CCPA, DSGVO, Cookie Consent), CVE-2023-4013

CVE, Research URL

CVE-2023-4013

Published on
Aug 30, 2023
Research Description
The GDPR Cookie Compliance (CCPA, DSGVO, Cookie Consent) WordPress plugin before 4.12.5 does not have proper CSRF checks when managing its license, which could allow attackers to make logged in admins update and deactivate the plugin's license via CSRF attacks
Affected versions
Min -, max 4.12.5.
Status
vulnerable