Vulnerabilities > Kazencoders

DATE CVE VULNERABILITY TITLE RISK
2021-11-29 CVE-2021-24749 Cross-Site Request Forgery (CSRF) vulnerability in Kazencoders URL Shortify
The URL Shortify WordPress plugin before 1.5.1 does not have CSRF check in place when bulk-deleting links or groups, which could allow attackers to make a logged in admin delete arbitrary link and group via a CSRF attack.
4.3