CVE-2024-54381
Advanced Menu Manager Pro – Built for Content-heavy WordPress Sites to Add, Filter, Lock, and Edit Menus Easily
Minimum safe version
3.1.2
Update to 3.1.2 or later to address 15 fixable vulnerabilities
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Advance Menu Manager Plugin <= 3.0.6 is vulnerable to Broken Access Control
WordPress Advance Menu Manager Plugin <= 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF)
Advance Menu Manager <= 3.0.6 - Cross-Site Request Forgery
Advance Menu Manager <= 3.0.6 - Missing Authorization
WordPress Advance Menu Manager Plugin <= 3.0.5 is vulnerable to Cross Site Scripting (XSS)
Advanced Menu Manager <= 3.0.6 - Authenticated (Subscriber+) Menu Creation/Deletion
Advanced Menu Manager <= 2.9.6 - Cross-Site Request Forgery to Menu Edition
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Advanced Menu Manager <= 3.0.2 - Unauthorised Menu Creation/Deletion
Advanced Menu Manager < 3.0 - Unauthorised Menu Edition via CSRF
WordPress Advance Menu Manager plugin <= 2.9.6 - Unauthorized Menu Edition via Cross-Site Request Forgery (CSRF) vulnerability
WordPress Advance Menu Manager plugin <= 3.0.1 - Unauthorized Menu Creation/Deletion vulnerability
WordPress Advance Menu Manager plugin <= 3.0.1 - Sensitive Information Disclosure vulnerability
WordPress Advance Menu Manager plugin <= 3.0.1 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability