Medium 6.5 Closed
2022-04-18< 2.5.0
CVE-2022-23975
CVE-2022-23975
AccessPress Themes and Plugin <= Various Versions - Cross-Site Request Forgery
WordPress AccessPress Store theme <= 2.4.9 - Cross-Site Request Forgery (CSRF) leading to Arbitrary Plugin Activation/Deactivation
WordPress AccessPress Store theme <= 2.4.9 - Authenticated Arbitrary Plugin Activation/Deactivation vulnerability
WordPress AccessPress Store theme <= 2.4.9 - Arbitrary File Upload vulnerability
CVE-2021-24867