VYPR
Medium severity4.3NVD Advisory· Published Jun 8, 2022· Updated Jun 17, 2026

CVE-2022-1709

CVE-2022-1709

Description

The Throws SPAM Away WordPress plugin before 3.3.1 does not have CSRF checks in place when deleting comments (either all, spam, or pending), allowing attackers to make a logged in admin delete comments via a CSRF attack

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.