Medium 6.5
2022-04-18< 1.0.7
CVE-2022-23975
Minimum safe version
1.0.7
Update to 1.0.7 or later to address 3 fixable vulnerabilities
CVE-2022-23975
AccessPress Themes and Plugin <= Various Versions - Cross-Site Request Forgery
WordPress Zigcy Baby theme <= 1.0.6 - Cross-Site Request Forgery (CSRF) leading to Arbitrary Plugin Activation/Deactivation
WordPress Zigcy Baby theme <= 1.0.6 - Authenticated Arbitrary Plugin Activation/Deactivation vulnerability
WordPress Zigcy Baby theme <= 1.0.6 - Arbitrary File Upload vulnerability
CVE-2021-24867