CVE-2022-29454

All FrameworksWordPressCWE-352CVE-2022-29454

CVE-2022-29454

State: PUBLISHED · Published: 2022-07-20 · Updated: 2025-02-20 · Assigner: Patchstack
Description
Cross-Site Request Forgery (CSRF) vulnerability in WordPlus Better Messages plugin <= 1.9.9.148 at WordPress allows attackers to upload files. File attachment to messages must be activated.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2022/29xxx/CVE-2022-29454.json