Medium 6.5 Unfixed
2022-04-18≤ 1.1.2
CVE-2022-23975
Minimum safe version
—
No explicit fix version available
CVE-2022-23975
AccessPress Themes and Plugin <= Various Versions - Cross-Site Request Forgery
WordPress The100 theme <= 1.1.2 - Arbitrary File Upload vulnerability
WordPress The100 theme <= 1.1.2 - Cross-Site Request Forgery (CSRF) leading to Arbitrary Plugin Activation/Deactivation
WordPress The100 theme <= 1.1.2 - Authenticated Arbitrary Plugin Activation/Deactivation vulnerability