Vulnerabilities > Amentotech > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-08-09 CVE-2021-24499 Unspecified vulnerability in Amentotech Workreap
The Workreap WordPress theme before 2.2.2 AJAX actions workreap_award_temp_file_uploader and workreap_temp_file_uploader did not perform nonce checks, or validate that the request is from a valid user in any other way.
network
low complexity
amentotech
critical
9.8