VYPR

Spice Starter Sites

by WordPress

CVEs (1)

  • CVE-2024-8430MedOct 1, 2024
    risk 0.34cvss 5.3epss 0.00

    The Spice Starter Sites plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the spice_starter_sites_importer_creater function in all versions up to, and including, 1.2.5. This makes it possible for unauthenticated…