Medium 6.5 Unfixed
2022-04-18≤ 1.1.4
CVE-2022-23975
Minimum safe version
—
No explicit fix version available
CVE-2022-23975
AccessPress Themes and Plugin <= Various Versions - Cross-Site Request Forgery
WordPress Eight Sec theme <= 1.1.4 - Arbitrary File Upload vulnerability
WordPress Eight Sec theme <= 1.1.4 - Cross-Site Request Forgery (CSRF) leading to Arbitrary Plugin Activation/Deactivation
WordPress Eight Sec theme <= 1.1.4 - Authenticated Arbitrary Plugin Activation/Deactivation vulnerability