SexyBookmarks <= 6.1.4.0 - Cross-Site Request Forgery
highCross-site request forgery (CSRF) vulnerability in the Shareaholic SexyBookmarks plugin 6.1.4.0 for WordPress allows remote attackers to hijack the authentication of users for requests that "manipulate plugin settings."
- CVSS:
- 8.8
- Affected:
- up to 6.1.4.0
- Fixed in:
- 6.1.5.0
- Disclosed:
- Aug 1, 2014