CVE Published: 18/03/2024 |
CVE Updated: 28/08/2024 |
CVE Year: 2024 Source: WPScan |
Vendor: Unknown |
Product: Enjoy Social Feed plugin for WordPress website Status : PUBLISHED
CVE-2024-0779 Description
The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation and CSRF in various function hooked to admin_init, allowing unauthenticated users to call them and unlink arbitrary users Instagram Account for example