Medium 6.5
2022-04-18< 3.2.2
CVE-2022-23975
Minimum safe version
3.2.2
Update to 3.2.2 or later to address 4 fixable vulnerabilities
CVE-2022-23975
AccessPress Themes and Plugin <= Various Versions - Missing Authorization to Arbitrary Plugin Deactivation/Activation
AccessPress Themes and Plugin <= Various Versions - Cross-Site Request Forgery
WordPress Accesspress Basic theme <= 3.2.1 - Cross-Site Request Forgery (CSRF) leading to Arbitrary Plugin Activation/Deactivation
WordPress Accesspress Basic theme <= 3.2.1 - Authenticated Arbitrary Plugin Activation/Deactivation vulnerability
WordPress Accesspress Basic theme <= 3.2.1 - Arbitrary File Upload vulnerability
CVE-2021-24867