Author: Angelo Barbosa

CVE-2023-48744 | Availability Calendar Plugin up to 1.2.6 on WordPress add_availability_calendar_create_admin_page cross-site request forgery

A vulnerability, which was classified as problematic, was found in Availability Calendar Plugin up to 1.2.6 on WordPress. Affected is the function add_availability_calendar_create_admin_page. The manipulation leads to cross-site request forgery. This vulnerability is traded as CVE-2023-48744. It is possible to launch the attack remotely. There is no exploit...

Read More

CVE-2023-48323 | Awesome Support Plugin up to 6.1.4 on WordPress wpas_edit_reply_ajax cross-site request forgery

A vulnerability classified as problematic has been found in Awesome Support Plugin up to 6.1.4 on WordPress. This affects the function wpas_edit_reply_ajax. The manipulation leads to cross-site request forgery. This vulnerability is uniquely identified as CVE-2023-48323. It is possible to initiate the attack remotely. There is no exploit...

Read More