6.5
CVSSv3

CVE-2022-1424

Published: 08/06/2022 Updated: 14/06/2022
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The Ask me WordPress theme prior to 6.8.2 does not perform CSRF checks for any of its AJAX actions, allowing an malicious user to trick logged in users to perform various actions on their behalf on the site.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

2code ask me