Vulnerabilities (CVE)

Filtered by vendor Greeklish-permalink Project Subscribe
Filtered by product Greeklish-permalink
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-2495 1 Greeklish-permalink Project 1 Greeklish-permalink 2024-11-21 N/A 4.3 MEDIUM
The Greeklish-permalink WordPress plugin through 3.3 does not implement correct authorization or nonce checks in the cyrtrans_ajax_old AJAX action, allowing unauthenticated and low-privilege users to trigger the plugin's functionality to change Post slugs either directly or through CSRF.