CVE Database /
CVE-2023-6279
CVE · High
CVE-2023-6279 — Woostify Sites Library [woostify-sites-library] < 1.4.8
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2023-6279
|
Woostify Sites Library [woostify-sites-library] < 1.4.8 |
Missing Authorization |
High
7.1
|
< 1.4.8
|
1.4.8 |
2024-01-29 |
—
|
CVE-2023-6279
The Woostify Sites Library plugin before version 1.4.8 contains a broken access control vulnerability that allows unprivileged users to perform actions requiring higher privileges due to missing authorization, authentication, or nonce verification checks. Researcher Krzysztof Zając discovered and reported this flaw to CERT PL. The vulnerability has been resolved in version 1.4.8 and later.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings