Medium 6.5 Unfixed Closed
2022-04-18≤ 1.4.1
CVE-2022-23975
CVE-2022-23975
AccessPress Themes and Plugin <= Various Versions - Cross-Site Request Forgery
WordPress The Monday theme <= 1.4.1 - Cross-Site Request Forgery (CSRF) leading to Arbitrary Plugin Activation/Deactivation discovered by Ex.Mi (Patchstack) in
WordPress The Monday theme <= 1.4.1 - Authenticated Arbitrary Plugin Activation/Deactivation vulnerability
WordPress The Monday theme <= 1.4.1 - Arbitrary File Upload vulnerability
CVE-2021-24867