Medium 6.5
2022-04-18< 2.1.9
CVE-2022-23975
Minimum safe version
2.1.9
Update to 2.1.9 or later to address 2 fixable vulnerabilities
CVE-2022-23975
AccessPress Themes and Plugin <= Various Versions - Cross-Site Request Forgery
WordPress Eightmedi Lite theme <= 2.1.8 - Cross-Site Request Forgery (CSRF) leading to Arbitrary Plugin Activation/Deactivation
WordPress Eightmedi Lite theme <= 2.1.8 - Authenticated Arbitrary Plugin Activation/Deactivation vulnerability
WordPress Eightmedi Lite theme <= 2.1.8 - Arbitrary File Upload vulnerability