High severity8.8NVD Advisory· Published Aug 16, 2019· Updated Jun 17, 2026
CVE-2018-20972
CVE-2018-20972
Description
The companion-auto-update plugin before 3.2.1 for WordPress has CSRF.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WordPress/companion-auto-update plugindescription
- Range: <3.2.1
- cpe:2.3:a:codeermeneer:companion_auto_update:*:*:*:*:*:wordpress:*:*Range: <3.2.1
Patches
Vulnerability mechanics
References
1- wordpress.org/plugins/companion-auto-update/nvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.