CVE-2024-13580 Information

Description

The XV Random Quotes WordPress plugin through 1.40 does not have CSRF check in place when updating its settings which could allow attackers to make a logged in admin reset them via a CSRF attack

Reference

https://wpscan.com/vulnerability/48cffe03-adcf-4da2-a331-464ae511a805/ https://wpscan.com/vulnerability/48cffe03-adcf-4da2-a331-464ae511a805/

Share on: