Medium severity4.3NVD Advisory· Published Jun 27, 2022· Updated Jun 17, 2026
CVE-2022-0444
CVE-2022-0444
Description
The Backup, Restore and Migrate WordPress Sites With the XCloner Plugin WordPress plugin before 4.3.6 does not have authorisation and CSRF checks when resetting its settings, allowing unauthenticated attackers to reset them, including generating a new backup encryption key.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WordPress/Backup, Restore and Migrate WordPress Sites With the XCloner Plugindescription
- Range: <4.3.6
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/9567d295-43c7-4e59-9283-c7726f16d40bnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.