ShareThis <= 7.0.5 - Cross-Site Request Forgery
highCross-site request forgery (CSRF) vulnerability in the ShareThis plugin before 7.0.6 for WordPress allows remote attackers to hijack the authentication of administrators for requests that modify this plugin's settings.
- CVSS:
- 8.8
- Affected:
- up to 7.0.5
- Fixed in:
- 7.0.6
- Disclosed:
- May 7, 2013