High severity8.8NVD Advisory· Published Jul 7, 2021· Updated Jun 17, 2026
CVE-2021-20780
CVE-2021-20780
Description
Cross-site request forgery (CSRF) vulnerability in WPCS - WordPress Currency Switcher 1.1.6 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:wp-currency:wordpress_currency_switcher:*:*:*:*:*:wordpress:*:*Range: <=1.1.6
- Range: <=1.1.6
- Range: <=1.1.6
- realmag777/WPCS - WordPress Currency Switcherv5Range: 1.1.6 and earlier
Patches
Vulnerability mechanics
References
3- jvn.jp/en/jp/JVN91372527/index.htmlnvdThird Party Advisory
- wordpress.org/plugins/currency-switcher/nvdProductThird Party Advisory
- pluginus.netnvdProduct
News mentions
0No linked articles in our index yet.