The WP Prayer WordPress plugin through 2.0.9 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2024-05-15T06:00:03.079Z

Updated: 2024-08-01T20:12:06.634Z

Reserved: 2024-04-05T19:24:00.907Z

Link: CVE-2024-3407

cve-icon Vulnrichment

Updated: 2024-08-01T20:12:06.634Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-15T06:15:11.850

Modified: 2024-11-21T09:29:32.093

Link: CVE-2024-3407

cve-icon Redhat

No data.