Social Warfare <= 3.5.2 - Remote Code Execution
Unauthenticated remote code execution has been discovered in functionality that handles settings import.
CVSS—
共找到 2 条公开漏洞记录
Unauthenticated remote code execution has been discovered in functionality that handles settings import.
WordPress Social Warfare plugin before 3.5.3 contains a cross-site scripting vulnerability via the wp-admin/admin-post.php?swp_debug=load_options swp_url parameter, affecting Social Warfare and Social Warfare Pro.