8.8
CVSSv3

CVE-2023-47870

Published: 30/11/2023 Updated: 06/12/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Cross-Site Request Forgery (CSRF), Missing Authorization vulnerability in gVectors Team wpForo Forum wpforo allows Cross Site Request Forgery, Accessing Functionality Not Properly Constrained by ACLs leading to forced all users log out.This issue affects wpForo Forum: from n/a up to and including 2.2.6.

Vulnerable Product Search on Vulmon Subscribe to Product

gvectors wpforo forum