CVE-2022-2377 Information
Aug 23, 2022
cve
Description
The Directorist WordPress plugin before 7.3.0 does not have authorisation and CSRF checks in an AJAX action allowing any authenticated users to send arbitrary emails on behalf of the blog
Reference
https://wpscan.com/vulnerability/f4e606e9-0664-42fb-a59b-21de306eb530
Share on: