Read More Excerpt Link [read-more-excerpt-link] < 1.6.1
unknown[en] Cross-Site Request Forgery (CSRF) vulnerability in Tim Eckel Read More Excerpt Link plugin <= 1.6 versions.
- Affected:
- up to 1.6.1
- Fixed in:
- 1.6.1
- Disclosed:
- May 23, 2023
plugin
4 known security issues reported for the Read More Excerpt Link WordPress plugin. Most recent disclosed May 23, 2023.
Running Read More Excerpt Link on your site? Check whether your installed version is affected.
Scan your site free[en] Cross-Site Request Forgery (CSRF) vulnerability in Tim Eckel Read More Excerpt Link plugin <= 1.6 versions.
The Download Read More Excerpt Link plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.0. This is due to missing or incorrect nonce validation on the read_more_excerpt_link_menu_options() function. This makes it possible for unauthenticated attackers to update he plug...
[en] The Download Read More Excerpt Link plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.0. This is due to missing or incorrect nonce validation on the read_more_excerpt_link_menu_options() function. This makes it possible for unauthenticated attackers to update he...
The Read More Excerpt Link plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.5. This is due to missing or incorrect nonce validation on the read_more_excerpt_link_menu_options function. This makes it possible for unauthenticated attackers to invoke this function and ch...
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free