CVE-2024-6846

The Chatbot with ChatGPT WordPress plugin before 2.4.5 does not validate access on some REST routes, allowing for an unauthenticated user to purge error and chat logs
Configurations

No configuration.

History

05 Sep 2024, 14:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

05 Sep 2024, 12:53

Type Values Removed Values Added
Summary
  • (es) El Chatbot con el complemento ChatGPT de WordPress anterior a la versiĆ³n 2.4.5 no valida el acceso en algunas rutas REST, lo que permite que un usuario no autenticado elimine los registros de errores y chats.

05 Sep 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-05 06:15

Updated : 2024-09-05 14:35


NVD link : CVE-2024-6846

Mitre link : CVE-2024-6846

CVE.ORG link : CVE-2024-6846


JSON object : View

Products Affected

No product.

CWE

No CWE.