Critical severity9.8NVD Advisory· Published Jan 1, 2021· Updated Jun 17, 2026
CVE-2020-35950
CVE-2020-35950
Description
An issue was discovered in the XCloner Backup and Restore plugin before 4.2.153 for WordPress. It allows CSRF (via almost any endpoint).
Affected products
3- WordPress/XCloner Backup and Restore plugindescription
- Range: <4.2.153
Patches
Vulnerability mechanics
References
2- wpscan.com/vulnerability/10413nvdExploitThird Party Advisory
- www.wordfence.com/blog/2020/09/critical-vulnerabilities-patched-in-xcloner-backup-and-restore-plugin/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.