The AnyComment WordPress plugin prior to 0.2.18 does not have CSRF checks in the Import and Revert HyperComments features, allowing malicious users to make logged in admin perform such actions via a CSRF attack
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
bologer anycomment |