Medium severity4.3NVD Advisory· Published Jul 10, 2023· Updated Jun 17, 2026
CVE-2023-2495
CVE-2023-2495
Description
The Greeklish-permalink WordPress plugin through 3.3 does not implement correct authorization or nonce checks in the cyrtrans_ajax_old AJAX action, allowing unauthenticated and low-privilege users to trigger the plugin's functionality to change Post slugs either directly or through CSRF.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:greeklish-permalink_project:greeklish-permalink:*:*:*:*:*:wordpress:*:*Range: <=3.3
(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=3.3
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/45878983-7e9b-49c2-8f99-4c28aab24f09nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.