The Cache Images WordPress plugin prior to 3.2.1 does not implement nonce checks, which could allow malicious users to make any logged user upload images via a CSRF attack.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cache images project cache images |