Unrated severityNVD Advisory· Published May 15, 2025· Updated May 20, 2025
Ultimate Noindex Nofollow Tool <= 1.1.2 - Settings Update via CSRF
CVE-2023-7196
Description
The Ultimate Noindex Nofollow Tool WordPress plugin through 1.1.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
Affected products
1- Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- wpscan.com/vulnerability/15ea1ffd-5a0c-422c-8c9c-7b632516a156/mitreexploitvdb-entrytechnical-description
News mentions
0No linked articles in our index yet.