Vulnerabilities (CVE)

Filtered by vendor Wp-experts Subscribe
Filtered by product Protect Wp Admin
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24906 1 Wp-experts 1 Protect Wp Admin 2022-07-12 5.0 MEDIUM 7.5 HIGH
The Protect WP Admin WordPress plugin before 3.6.2 does not check for authorisation in the lib/pwa-deactivate.php file, which could allow unauthenticated users to disable the plugin (and therefore the protection offered) via a crafted request