Custom CSS Pro <= 1.0.3 - Cross-site Request Forgery
highCross-site request forgery (CSRF) vulnerability in Custom CSS Pro 1.0.3 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
- CVSS:
- 8.8
- Affected:
- up to 1.0.3
- Fixed in:
- 1.0.4
- Disclosed:
- Jun 24, 2019