CVE-2019-14327

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
30/07/2019
Last modified:
31/07/2019

Description

A CSRF vulnerability in Settings form in the Custom Simple Rss plugin 2.0.6 for WordPress allows attackers to change the plugin settings.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:custom_simple_rss_project:custom_simple_rss:*:*:*:*:*:wordpress:*:* 2.0.6 (including)