- Lana Codes
- Common Vulnerabilities
CP Contact Form with Paypal by CodePeople <= 1.3.34 - CSRF
LANACOMMONVDB ID: 5784196e-aa11-41f6-b117-60b357cf4b34
The plugin does not have Cross-Site Request Forgery (CSRF) check when submitting feedback, which could allow attackers to make logged in users do such action on their behalf via a Cross-Site Request Forgery (CSRF) attack.
You must be log in to view vulnerability details.
Or register a new account.