CVE Database /
CVE-2024-3213
CVE · High
CVE-2024-3213 — Relevanssi – A Better Search [relevanssi] < 4.22.2
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2024-3213
|
Relevanssi – A Better Search [relevanssi] < 4.22.2 |
Missing Authorization |
High
8.2
|
< 4.22.2
|
4.22.2 |
2024-04-04 |
—
|
CVE-2024-3213
The Relevanssi search plugin versions before 4.22.2 contain a broken access control flaw that allows unauthenticated users to perform actions intended only for higher-privileged accounts due to missing authorization checks and nonce validation. This vulnerability was discovered by Thura Moe Myint and has been resolved in version 4.22.2 and later.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings