CVE Database /
CVE-2023-48739
CVE · Medium
CVE-2023-48739 — Porto Functionality [porto-functionality] < 2.12.1
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2023-48739
|
Porto Functionality [porto-functionality] < 2.12.1 |
Missing Authorization |
Medium
5.3
|
< 2.12.1
|
2.12.1 |
2023-11-23 |
—
|
CVE-2023-48739
No patched version is available.
Rafie Muhammad (Patchstack) discovered and reported this Broken Access Control vulnerability in WordPress Porto Theme - Functionality Plugin. A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action. This vulnerability has not been known to be fixed yet.
Source:
Patchstack
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings