CVE-2022-1709 Information
Jun 11, 2022
cve
Description
The Throws SPAM Away WordPress plugin before 3.3.1 does not have CSRF checks in place when deleting comments (either all spam or pending) allowing attackers to make a logged in admin delete comments via a CSRF attack
Reference
https://wpscan.com/vulnerability/ac290535-d9ec-459a-abc3-27cd78eb54fc
Share on: