CVE-2022-1663

The Stop Spam Comments WordPress plugin through 0.2.1.2 does not properly generate the Javascript access token for preventing abuse of comment section, allowing threat authors to easily collect the value and add it to the request.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:stop_spam_comments_project:stop_spam_comments:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2022-08-29 18:15

Updated : 2024-02-28 19:29


NVD link : CVE-2022-1663

Mitre link : CVE-2022-1663

CVE.ORG link : CVE-2022-1663


JSON object : View

Products Affected

stop_spam_comments_project

  • stop_spam_comments
CWE
NVD-CWE-Other CWE-200

Exposure of Sensitive Information to an Unauthorized Actor