cleantalk
Vulnerabilities and Security Researches

MStore API, CVE-2023-3209

CVE, Research URL

CVE-2023-3209

Application

MStore API

Published on
Jul 10, 2023
Research Description
The MStore API WordPress plugin before 3.9.7 does not secure most of its AJAX actions by implementing privilege checks, nonce checks, or a combination of both.
Affected versions
Min -, max 3.9.7.
Status
vulnerable