Cross-Site Request Forgery (CSRF) vulnerability in Yooslider Yoo Slider <= 2.0.0 on WordPress allows attackers to import templates.
References
Link | Resource |
---|---|
https://patchstack.com/database/vulnerability/yoo-slider/wordpress-yoo-slider-plugin-2-0-0-cross-site-request-forgery-csrf-vulnerability-leading-to-template-import | Third Party Advisory |
https://wordpress.org/plugins/yoo-slider/#developers | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2022-04-13 18:15
Updated : 2022-04-21 02:26
NVD link : CVE-2022-27847
Mitre link : CVE-2022-27847
CVE.ORG link : CVE-2022-27847
JSON object : View
Products Affected
yooslider
- yoo_slider
CWE
CWE-352
Cross-Site Request Forgery (CSRF)