CVE · Medium

CVE-2023-45760 — Comments – wpDiscuz [wpdiscuz] < 7.6.4

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-45760 Comments – wpDiscuz [wpdiscuz] < 7.6.4 Missing Authorization Medium 4.3 < 7.6.12 7.6.12 2023-10-12

CVE-2023-45760

The wpDiscuz plugin versions before 7.6.4 contain a broken access control vulnerability that allows unauthenticated or low-privilege users to perform actions restricted to higher-privilege accounts due to missing authorization and authentication checks. The flaw was discovered by FearZzZz and has been patched in version 7.6.4 and later. Users should upgrade their wpDiscuz installation to version 7.6.4 or newer to resolve this issue.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.