Fiche vulnérabilité
CVE-2024-0780 : faille élevée mediabetaprojects enjoy social feed (CVSS 8.8)
Description
The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation when resetting its database, allowing any authenticated users, such as subscriber to perform such action
En bref
- Sévérité
- Élevée (CVSS 8.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 18 mars 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- mediabetaprojects enjoy social feed