N/A Unfixed Closed
2022-01-24≤ 1.4.0
Lean WP <= 1.4.0 - Cross-Site Request Forgery
Minimum safe version
—
No explicit fix version available
Lean WP <= 1.4.0 - Cross-Site Request Forgery
WP Dependency Installer < 4.3.1 - Subscriber+ Arbitrary Plugin Activation
WP Dependency Installer < 4.3.1 - Arbitrary Plugin Installation from Dependency via CSRF
WordPress Lean WP plugin <= 1.4.0 - Arbitrary Plugin Activation vulnerability
WordPress Lean WP plugin <= 1.4.0 - Arbitrary Plugin Installation from Dependency via Cross-Site Request Forgery (CSRF) vulnerability