Unrated severityNVD Advisory· Published May 15, 2025· Updated May 17, 2025
Simple Nav Archives <= 2.1.3 - Settings Update via CSRF
CVE-2024-8398
Description
The Simple Nav Archives WordPress plugin through 2.1.3 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
Affected products
1- Range: <=2.1.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- wpscan.com/vulnerability/f432901f-31dd-433c-91bf-ec19fa61b6d8/mitreexploitvdb-entrytechnical-description
News mentions
0No linked articles in our index yet.