605
VMScore

CVE-2022-1672

Published: 17/07/2022 Updated: 18/07/2022
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Insights from Google PageSpeed WordPress plugin prior to 4.0.7 does not verify for CSRF before doing various actions such as deleting Custom URLs, which could allow malicious users to make a logged in admin perform such actions via CSRF attacks

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

insights from google pagespeed project insights from google pagespeed