CVE-2023-3277 - Critical Unauthorized Account Access and Privilege Escalation Vulnerability in MStore API WordPress Plugin
Summary:
A vulnerability (CVE-2023-3277) has been found in the popular MStore API WordPress plugin (versions up to and including 4.10.7). This flaw allows
CVE-2023-2732 - How an Authentication Bypass in the MStore API Plugin Lets Attackers Hijack Any WordPress Account
Published: 2024-06
Summary
A critical vulnerability, CVE-2023-2732, has been discovered in the popular MStore API plugin for WordPress. This bug allows anyone—including attackers who