Vulnerabilities > WOW Company > WOW Skype Buttons > 4.0.2

DATE CVE VULNERABILITY TITLE RISK
2024-05-02 CVE-2024-3474 Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company WOW Skype Buttons
The Wow Skype Buttons WordPress plugin before 4.0.4 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting buttons via CSRF attacks
network
low complexity
wow-company CWE-352
8.8