Vulnerabilities > Facebook > Facebook > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-04-12 CVE-2021-24218 Cross-Site Request Forgery (CSRF) vulnerability in Facebook
The wp_ajax_save_fbe_settings and wp_ajax_delete_fbe_settings AJAX actions of the Facebook for WordPress plugin before 3.0.4 were vulnerable to CSRF due to a lack of nonce protection.
network
facebook CWE-352
6.8