CVE-2023-7125 Information

Description

The Community by PeepSo WordPress plugin before 6.3.1.2 does not have CSRF check when creating a user post (visible on their wall in their profile page) which could allow attackers to make logged in users perform such action via a CSRF attack

Reference

https://wpscan.com/vulnerability/cac12b64-ed25-4ee2-933f-8ff722605271/

Share on: