CVE-2024-3405 Information

Description

The WP Prayer WordPress plugin through 2.0.9 does not have CSRF check in place when updating its settings which could allow attackers to make a logged in admin change them via a CSRF attack

Reference

https://wpscan.com/vulnerability/6968d43c-16ff-43a9-8451-71aabbe69014/

Share on: