Vulnerabilities > Weberge

DATE CVE VULNERABILITY TITLE RISK
2022-11-07 CVE-2022-3489 Missing Authorization vulnerability in Weberge WP Hide 0.0.2
The WP Hide WordPress plugin through 0.0.2 does not have authorisation and CSRF checks in place when updating the custom_wpadmin_slug settings, allowing unauthenticated attackers to update it with a crafted request
network
low complexity
weberge CWE-862
5.3