Import and export users and customers, CVE-2019-14683
- CVE, Research URL
- Application
- Published on
- Aug 09, 2019
- Research Description
- The codection "Import users from CSV with meta" plugin before 1.14.2.2 for WordPress allows wp-admin/admin-ajax.php?action=acui_delete_attachment CSRF.
- Affected versions
-
max 1.14.2.2.
- Status
-
vulnerable