CVE-2022-3097 Information

Description

The LBStopAttack WordPress plugin through 1.1.2 does not use nonces when saving its settings making it possible for attackers to conduct CSRF attacks. This could allow attackers to disable the plugin’s protections.

Reference

https://wpscan.com/vulnerability/9ebb8318-ebaf-4de7-b337-c91327685a43

Share on: