CVE-2024-12280 – WordPress Customer Area CSRF Delete Log

CVE ID : CVE-2024-12280

Published : Jan. 27, 2025, 6:15 a.m. | 1 hour, 6 minutes ago

Description : The WP Customer Area WordPress plugin through 8.2.4 does not have CSRF check in place when deleting its logs, which could allow attackers to make a logged in to delete them via a CSRF attack

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Share the Post:

Related Posts