CVE-2022-2450 Information

Description

The reSmush.it : the only free Image Optimizer & compress plugin WordPress plugin before 0.4.4 lacks authorization in various AJAX actions allowing any logged-in users such as subscribers to call them.

Reference

https://wpscan.com/vulnerability/1b3ff124-f973-4584-a7d7-26cc404bfe2b

Share on: