Vulnerabilities > Maxfoundry > Media Library Folders > 4.0.5

DATE CVE VULNERABILITY TITLE RISK
2024-08-30 CVE-2024-7858 Missing Authorization vulnerability in Maxfoundry Media Library Folders
The Media Library Folders plugin for WordPress is vulnerable to unauthorized access due to missing capability checks on several AJAX functions in the media-library-plus.php file in all versions up to, and including, 8.2.3.
network
low complexity
maxfoundry CWE-862
6.3
2022-11-18 CVE-2022-41634 Cross-Site Request Forgery (CSRF) vulnerability in Maxfoundry Media Library Folders
Cross-Site Request Forgery (CSRF) vulnerability in Media Library Folders plugin <= 7.1.1 on WordPress.
network
low complexity
maxfoundry CWE-352
8.8