The Jetpack Scan team identified a Cross-Site Request Forgery vulnerability in the Patreon WordPress plugin prior to 1.7.0, allowing malicious users to make a logged administrator disconnect the site from Patreon by visiting a specially crafted link.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|