CVE-2024-25930 - Exploiting CSRF in Nuggethon Custom Order Statuses for WooCommerce (<= 1.5.2)
On February 21, 2024, a serious security vulnerability was disclosed in the Nuggethon Custom Order Statuses for WooCommerce plugin, affecting all versions up to 1.
CVE-2024-25932 - How CSRF Left Change Table Prefix WordPress Plugin Wide Open (Full Exploit Walkthrough)
On February 2024, the cybersecurity community uncovered a serious Cross-Site Request Forgery (CSRF) vulnerability, tracked as CVE-2024-25932, in the popular *Change Table
CVE-2024-24701 - How a CSRF Bug Threatens Websites Using Native Grid’s No-Code Page Builder (v2.1.20 and Below)
On February 2024, a pretty dangerous vulnerability popped up in Native Grid LLC’s “A no-code page builder for beautiful performance-based content”. Tracked
CVE-2024-24708 - CSRF in W3SPEEDSTER Up to 7.19 — What You Need to Know (With Exploit Example)
A fresh CVE dropped on the WordPress scene — CVE-2024-24708 — affects any site running the popular W3SPEEDSTER optimization plugin, versions up to and including
CVE-2024-23519 - Easy Exploit Guide for CSRF Vulnerability in M&S Consulting Email Before Download Plugin
---
If you run a WordPress website and use the “Email Before Download” plugin by M&S Consulting, you’ll want to hear about CVE-
Episode
00:00:00
00:00:00