CVE-2024-8082 Information

Description

The Widgets Reset WordPress plugin through 0.1 does not have CSRF check in place when updating its settings which could allow attackers to make a logged in admin change them via a CSRF attack

Reference

https://wpscan.com/vulnerability/47b2cd60-9ac4-49cf-8ca9-7d90656fc397/

Share on: