Vulnerabilities > Themoneytizer

DATE CVE VULNERABILITY TITLE RISK
2024-06-06 CVE-2023-6966 Missing Authorization vulnerability in Themoneytizer the Moneytizer
The The Moneytizer plugin for WordPress is vulnerable to unauthorized access of data, modification of data, and loss of data due to a missing capability check on multiple AJAX functions in the /core/core_ajax.php file in all versions up to, and including, 9.5.20.
network
low complexity
themoneytizer CWE-862
8.1
2024-06-06 CVE-2023-6968 Cross-Site Request Forgery (CSRF) vulnerability in Themoneytizer the Moneytizer
The The Moneytizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 9.5.20.
network
low complexity
themoneytizer CWE-352
5.4