cleantalk
Vulnerabilities and Security Researches

Import CSV or XML Datafeed With Ease, CVE-2022-3244

CVE, Research URL

CVE-2022-3244

Published on
Oct 17, 2022
Research Description
The Import all XML, CSV & TXT WordPress plugin before 6.5.8 does not have authorisation in some places, which could allow any authenticated users to access some of the plugin features if they manage to get the related nonce
Affected versions
Min -, max 3.6.75.
Status
vulnerable