Vulnerabilities > Webfactoryltd > WP Force SSL

DATE CVE VULNERABILITY TITLE RISK
2024-06-08 CVE-2024-5770 Missing Authorization vulnerability in Webfactoryltd WP Force SSL
The WP Force SSL & HTTPS SSL Redirect plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'ajax_save_setting' function in versions up to, and including, 1.66.
network
low complexity
webfactoryltd CWE-862
4.3