CVE-2021-36915

All FrameworksWordPressCWE-352CVE-2021-36915

CVE-2021-36915

State: PUBLISHED · Published: 2022-10-11 · Updated: 2025-02-20 · Assigner: Patchstack
Description
Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder plugin <= 3.6.0 at WordPress allows uploading the JSON file and updating the options. Requires Import and Export add-on.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/36xxx/CVE-2021-36915.json