plugin

Private Only Vulnerabilities

1 known security issue reported for the Private Only WordPress plugin. Most recent disclosed Aug 26, 2015.

1 high

Running Private Only on your site? Check whether your installed version is affected.

Scan your site free

Private Only <= 3.5.1 - Multiple Cross-Site Request Forgery

high

Multiple cross-site request forgery (CSRF) vulnerabilities in the Private Only plugin 3.5.1 for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) add users, (2) delete posts, or (3) modify PHP files via unspecified vectors, or (4) conduct cross-site scripting (XSS) at...

CVSS:
8.8
Affected:
up to 3.5.1
Fix:
No patched version reported
Disclosed:
Aug 26, 2015

CVE-2015-5483 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database