cleantalk
Vulnerabilities and Security Researches

Directory Listings WordPress plugin – uListing, CVE-2021-36876

CVE, Research URL

CVE-2021-36876

Published on
Sep 27, 2021
Research Description
Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in WordPress uListing plugin (versions <= 2.0.5) as it lacks CSRF checks on plugin administration pages.
Affected versions
Min -, max 2.0.6.
Status
vulnerable