CVE · High

CVE-2019-15329 — Import and export users and customers [import-users-from-csv-with-meta] < 1.14.0.3

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2019-15329, CVE-2019-15328 Import and export users and customers [import-users-from-csv-with-meta] < 1.14.0.3 Cross-Site Request Forgery (CSRF) High 8.8 < 1.14.0.3 1.14.0.3 2019-03-14

CVE-2019-15329, CVE-2019-15328

The import-users-from-csv-with-meta plugin for WordPress versions prior to 1.14.0.3 contains a cross-site request forgery vulnerability that could allow attackers to perform unauthorized actions by tricking users into executing malicious requests.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.