cleantalk
Vulnerabilities and Security Researches

StaffList, 9cc3fcd165efb3b7ed4fa445dd8be2e97b715325

Application

StaffList

Published on
May 04, 2022
Research Description
StaffList [stafflist] <= 3.1.5 WordPress StaffList plugin <= 3.1.5 - Arbitrary Staff Deletion via Cross-Site Request Forgery (CSRF) vulnerability Arbitrary Staff Deletion via Cross-Site Request Forgery (CSRF) vulnerability was discovered by Hassan Khan Yusufzai in the WordPress StaffList plugin (versions <= 3.1.5).
Affected versions
Min -, max 3.1.5.
Status
vulnerable