CVE-2024-6224 - WordPress Send Email Only on Reply to My Comment CSRF Stored XSS Vulnerability

CVE ID : CVE-2024-6224 Published : July 30, 2024, 6:15 a.m. | 44 minutes ago Description : The Send email only on Reply to My Comment WordPress plugin through 1.0.6 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Jul 30, 2024 - 09:00
 0  1
CVE-2024-6224 - WordPress Send Email Only on Reply to My Comment CSRF Stored XSS Vulnerability
CVE ID : CVE-2024-6224
Published : July 30, 2024, 6:15 a.m. | 44 minutes ago
Description : The Send email only on Reply to My Comment WordPress plugin through 1.0.6 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...