CVE Database
/

CVE-2024-1849

Back to search

CVE-2024-1849

Published: Apr 15, 2024

Modified: Aug 1, 2024

PUBLISHED

Description

The WP Customer Reviews WordPress plugin before 3.7.1 does not validate a parameter allowing contributor and above users to redirect a page to a malicious URL

VendorProductVersions

Unknown

WP Customer Reviews

affected
0 - < 3.7.1

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now