Medium severity6.5NVD Advisory· Published Nov 14, 2022· Updated Jun 17, 2026
CVE-2022-3538
CVE-2022-3538
Description
The Webmaster Tools Verification WordPress plugin through 1.2 does not have authorisation and CSRF checks when disabling plugins, allowing unauthenticated users to disable arbitrary plugins
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:webmaster_tools_verification_project:webmaster_tools_verification:*:*:*:*:*:wordpress:*:*Range: <=1.2
- WordPress/Webmaster Tools Verificationdescription
- Range: <=1.2
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/337ee7ed-9ade-4567-b976-88386cbcf036nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.