Vulnerabilities > Addify > Product Stock Manager > 1.0.3

DATE CVE VULNERABILITY TITLE RISK
2022-11-07 CVE-2022-3451 Missing Authorization vulnerability in Addify Product Stock Manager
The Product Stock Manager WordPress plugin before 1.0.5 does not have authorisation and proper CSRF checks in multiple AJAX actions, allowing users with a role as low as subscriber to call them.
network
low complexity
addify CWE-862
4.3