Autore: Angelo Barbosa

CVE-2023-48744 | Availability Calendar Plugin up to 1.2.6 on WordPress add_availability_calendar_create_admin_page cross-site request forgery

A vulnerability, which was classified as problematic, was found in Availability Calendar Plugin up to 1.2.6 on WordPress. Affected is the function add_availability_calendar_create_admin_page. The manipulation leads to cross-site request forgery. This vulnerability is traded as CVE-2023-48744. It is possible to launch the attack remotely. There is no exploit...

Per saperne di più

CVE-2023-6226 | WP Shortcodes Plugin up to 5.13.3 on WordPress resource injection

A vulnerability, which was classified as problematic, has been found in WP Shortcodes Plugin up to 5.13.3 on WordPress. This issue affects some unknown processing. The manipulation leads to improper control of resource identifiers. The identification of this vulnerability is CVE-2023-6226. The attack may be initiated remotely. There is no exploit...

Per saperne di più

CVE-2023-48323 | Awesome Support Plugin up to 6.1.4 on WordPress wpas_edit_reply_ajax cross-site request forgery

A vulnerability classified as problematic has been found in Awesome Support Plugin up to 6.1.4 on WordPress. This affects the function wpas_edit_reply_ajax. The manipulation leads to cross-site request forgery. This vulnerability is uniquely identified as CVE-2023-48323. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più