High severity8.8NVD Advisory· Published Jan 29, 2024· Updated Jun 17, 2026
CVE-2023-6946
CVE-2023-6946
Description
The Autotitle for WordPress plugin through 1.0.3 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <=1.0.3
Patches
Vulnerability mechanics
References
2- magos-securitas.com/txt/CVE-2023-6946nvdExploit
- wpscan.com/vulnerability/54a00416-c7e3-44f3-8dd2-ed9e748055e6/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.